<?xml version="1.0" encoding="UTF-8"?><!-- generator="wordpress.com" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>router &amp;laquo; WordPress.com Tag Feed</title>
	<link>http://wordpress.com/tag/router/</link>
	<description>Feed of posts on WordPress.com tagged "router"</description>
	<pubDate>Fri, 16 May 2008 14:15:12 +0000</pubDate>

	<generator>http://wordpress.com/tags/</generator>
	<language>en</language>

<item>
<title><![CDATA[tutoruial jaringan]]></title>
<link>http://teguhnet.wordpress.com/2008/05/16/tutoruial-jaringan/</link>
<pubDate>Fri, 16 May 2008 07:42:28 +0000</pubDate>
<dc:creator>teguhryo</dc:creator>
<guid>http://teguhnet.wordpress.com/2008/05/16/tutoruial-jaringan/</guid>
<description><![CDATA[ Sekilas mengenai hardware jaringan
=====================================================
Yup, kali ]]></description>
<content:encoded><![CDATA[<p><code> <font size="2"><span style="font-family:Courier New,Courier,mono;font-weight:bold;">Sekilas mengenai hardware jaringan</span><br><br />
</font>=====================================================<br><br />
<br><br />
Yup, kali ini saya akan coba jelaskan sedikit gambaran mengenai fungsi dari hardware jaringan yang telah di request. Yakni Router, Switch dan Hub. Langsung aja ke bahasanny<font size="2"><span style="font-family:Courier New,Courier,mono;">a ... </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160; &#160;</span><br><br />
<span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;text-decoration:underline;">Router</span><span style="text-decoration:underline;"> </span>: Router, digunakan untuk menyambung 2 jaringan yang berbeda.</span><span style="font-family:Courier New,Courier,mono;"> Sebagai contohnya, untuk menyambungkan antara LAN dengan Internet </span><span style="font-family:Courier New,Courier,mono;">diperlukan adanya router sebagai jembatan dari 2 jaringan tersebut.</span><br><br><span style="font-family:Courier New,Courier,mono;">Kedudukan router biasanya diletakkan sesudah modem, kira-kira</span> <span style="font-family:Courier New,Courier,mono;">gambarannya adalah seperti ini.</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160; ___________&#160;&#160;&#160;&#160;<br />
___________&#160;&#160;&#160;&#160; ___________&#160;&#160;&#160;&#160;<br />
___________</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160; &#160;&#160;&#160;&#160;&#160; &#124;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160; &#124;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;&#160;<br />
&#124; Internet &#124;----&#124;&#160; Modem&#160;&#160; &#124;----&#124;&#160; Router&#160;<br />
&#124;----&#124;&#160;&#160; LAN&#160;&#160;&#160; &#124; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;&#160;<br />
&#124;__________&#124;&#160;&#160;&#160; &#124;__________&#124;&#160;&#160;&#160;<br />
&#124;__________&#124;&#160;&#160;&#160; &#124;__________&#124;</span><br><br />
<br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160; &#160;&#160;&#160; <img src="http://assistenza.tiscali.it/networking/pratica/lan_router/img/router_hub.gif"></span><br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;">Router yang digambarkan diatas berfungsi sebagai gateway, sekaligus firewall.</span><br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;text-decoration:underline;">Gateway </span>: Gerbang penantian menuju internet. Masing-masing client/workstation</span><span style="font-family:Courier New,Courier,mono;"> dalam jaringan melewati gateway terlebih dahulu untuk menuju internet.</span> <span style="font-family:Courier New,Courier,mono;">Bisa digambarkan seperti ini :</span><br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160; ___________&#160;&#160;&#160;&#160;<br />
__________________&#160;&#160;&#160;&#160;<br />
___________&#160;&#160;&#160; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160; &#124;&#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160;&#160; &#124;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160; &#124;&#160; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160; &#160;&#160;&#160;&#160; &#124; Internet &#124;----&#124; WS1 as Gateway1 &#124;----&#124; WS Lain&#160; &#124; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160; &#124;__________&#124;&#160;&#160;&#160;<br />
&#124;_________________&#124;&#160;&#160;&#160; &#124;__________&#124;&#160;&#160; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160; &#124;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
&#124;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
_____&#124;____ </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160; &#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;<br />
&#124;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160; &#124;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160; &#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160;&#160;&#160; &#124; WS Lain&#160; &#124;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;<br />
&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160;<br />
&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;<br />
&#124;__________&#124; </span><br><br />
<br><br />
</font></p>
<div style="text-align:center;"><font size="2"><span style="font-family:Courier New,Courier,mono;"><img src="http://www.usd.edu/trio/tut/start/gif/gateway.gif"></span></font><br>
</div>
<p><font size="2"><span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;"><span style="text-decoration:underline;">Firewall</span> : </span>Biasanya dipasang diantara internet dan router. Firewall berfungsi </span><span style="font-family:Courier New,Courier,mono;">sebagai tembok keamanan untuk jaringan dalam [ LAN ]. </span><span style="font-family:Courier New,Courier,mono;">Didalamnya biasanya terdapat fasilitas, firewall, logging, snort. etc.</span><br><br />
<br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;"><br><br />
Contoh router phisik multifungsi seperti itu adalah Cisco Router.</span><span style="font-family:Courier New,Courier,mono;"> Tetapi saya lebih cenderung memakai alternatif router </span><span style="font-family:Courier New,Courier,mono;">yaitu menggunakan Smoothwall. Karena smoothwall </span><span style="font-family:Courier New,Courier,mono;">hanya memerlukan komputer butut yang sudah lama tidak terpakai</span><span style="font-family:Courier New,Courier,mono;"> dengan harddisk sekitar 300 mb, dan tentunya 2 lan card. </span><br><br />
<span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;">Smoothwall</span> adalah distro linux khusus yang didesain untuk menangani masalah </span><span style="font-family:Courier New,Courier,mono;">router, firewall, dan gateway.</span><span style="font-family:Courier New,Courier,mono;"> Selain itu Router pun digunakan untuk menyambungkan 2 LAN, yang </span><span style="font-family:Courier New,Courier,mono;">berbeda subnet masknya. Lebih kearah Intranet.</span><br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;text-decoration:underline;">Switch </span>: Biasanya switch banyak digunakan untuk jaringan LAN token star.</span><br><br />
<span style="font-family:Courier New,Courier,mono;"><br><br />
Dan switch ini digunakan sebagai repeater/penguat. Berfungsi untuk menghubungkan</span><span style="font-family:Courier New,Courier,mono;"> kabel-kabel UTP ( Kategori 5/5e ) komputer yang satu dengan komputer yang lain.</span><span style="font-family:Courier New,Courier,mono;"> Dalam switch biasanya terdapat routing, routing sendiri berfungsi untuk batu loncat </span><span style="font-family:Courier New,Courier,mono;">untuk melakukan koneksi dengan komputer lain dalam LAN.</span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160;&#160; </span><br><br />
<span style="font-family:Courier New,Courier,mono;">&#160;&#160;&#160; &#160;&#160;&#160; &#160;&#160;&#160; &#160;</span><br><br />
<span style="font-family:Courier New,Courier,mono;">Gambarannya adalah seperti ini :</span><span style="font-family:Courier New,Courier,mono;">&#160;&#160; &#160;&#160;  <br><br />
<br><br />
</span></font></p>
<div style="text-align:center;"><font size="2"><span style="font-family:Courier New,Courier,mono;"><img src="http://www.kvm-switch-review.com/images/kvm-switcha-big.jpg"></span></font><br>
</div>
<p><font size="2"><br><br />
<br><br />
<span style="font-family:Courier New,Courier,mono;"><span style="font-weight:bold;text-decoration:underline;">Hub&#160;&#160;</span>&#160; : Sama seperti switch, tetapi perbedaannya adalah hub tidak memiliki faslitas routing. </span><span style="font-family:Courier New,Courier,mono;">Sehingga semua informasi yang datang akan dikirimkan ke semua komputer (broadcast)</span><br><br />
<br><br><span style="font-family:Courier New,Courier,mono;"><br />
Untuk sementara segitu dulu aja penjelasannya yah ... heheuhuehue ... silahkan request lagi. </span><br><span style="font-family:Courier New,Courier,mono;"><br />
Nggak mahal kok, cuma 9 jutaan. Huehueh ....</span></font><br /><span style="font-size:9px;">Sumber dari situs <a href="http://www.ilmuwebsite.com">Ilmu Website</a> dalam kategori <a href="http://www.ilmuwebsite.com/jaringan/">jaringan</a> dengan judul <a href="http://www.ilmuwebsite.com/detil_jaringan/1/Sedikit_Penjelasan_Hardware_Jaringan/">Sedikit Penjelasan Hardware Jaringan</a></span><br />
</code></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Install Router di Linux  ]]></title>
<link>http://sendalteklek.wordpress.com/?p=39</link>
<pubDate>Fri, 16 May 2008 03:33:45 +0000</pubDate>
<dc:creator>sendalteklek</dc:creator>
<guid>http://sendalteklek.wordpress.com/?p=39</guid>
<description><![CDATA[Pertama yang harus di lakukan adalah mensetting mgw(main gateway) supaya bisa connect ke internet
Se]]></description>
<content:encoded><![CDATA[<p>Pertama yang harus di lakukan adalah mensetting mgw(main gateway) supaya bisa connect ke internet<br />
Sebelum Mensetting :<br />
1.Minta IP public ke ISP lengkap dengan netmask,broadcast dan dns nya<br />
misalnya :<br />
RANGE : 202.159.121.0/29<br />
IP : 202.159.121.2<br />
GATEWAY : 202.159.121.1<br />
Nemast : 255.255.255.248<br />
broadcast : 202.159.121.7<br />
DNS1 : 202.159.0.10<br />
DNS2 : 202.159.0.20<br />
berarti kita mendapatkan ip 5 buah dari 202.159.121.2 - 202.159.121.6<br />
<!--more--><br />
2.Menentukan IP local yang akan kita gunakan buat client</p>
<p>Setting IP MGW :<br />
1.[root@mgw cachak]$ vi /etc/sysconfig/network<br />
lalu isi dengan :</p>
<p>NETWORKING=yes<br />
HOSTNAME=mgw.domain.com<br />
GATEWAY=202.159.121.1</p>
<p>lalu simpen dengan menekan :wq</p>
<p>2.Menconfigurasi IP eth0(default)</p>
<p>[root@mgw root]$ vi /etc/sysconfig/network-scripts/ifcfg-eth0<br />
lalu isi dengan :</p>
<p>DEVICE=eth0<br />
BOOTPROTO=static<br />
IPADDR=202.159.121.2<br />
BROADCAST=202.159.121.7<br />
NETMASK=255.255.255.249<br />
ONBOOT=yes<br />
USERCTL=no</p>
<p>lalu simpen dengan menekan :wq</p>
<p>3.Setting dns resolve</p>
<p>[root@mgw root]$ vi /etc/resolve.conf<br />
lalu isi dengan nameserver dari isp kita tadi :</p>
<p>nameserver 202.159.0.10<br />
nameserver 202.159.0.20</p>
<p>lalu simpen dengan menekan :wq</p>
<p>4.Setting ip_forwarding</p>
<p>[root@mgw cachak]$ vi /etc/sysctl.conf</p>
<p>rubah net.ipv4.ip_forward = 0 menjadi net.ipv4.ip_forward = 1<br />
atau kalau gak ada net.ipv4.ip_forward = 0 tambahin net.ipv4.ip_forward = 1</p>
<p>simpen dengan menekan :wq</p>
<p>5.restart network<br />
[root@mgw cachak]$ /etc/init.d/network restart<br />
Shutting down interface eth0: [ OK ]<br />
Shutting down loopback interface: [ OK ]<br />
Disabling IPv4 packet forwarding: [ OK ]<br />
Setting network parameters: [ OK ]<br />
Bringing up loopback interface: [ OK ]<br />
Bringing up interface eth0: [ OK ]</p>
<p>[root@www root]#chkconfig –level 2345 network on<br />
[root@www root]#</p>
<p>6.testing dengan ngeping ke default gateway 202.159.121.1</p>
<p>[root@mgw cachak]$ ping 202.159.121.1<br />
PING 202.159.121.1 (202.159.121.1) 56(84) bytes of data.<br />
64 bytes from 202.159.121.1: icmp_seq=1 ttl=63 time=0.356 ms<br />
64 bytes from 202.159.121.1: icmp_seq=2 ttl=63 time=0.269 ms<br />
64 bytes from 202.159.121.1: icmp_seq=3 ttl=63 time=0.267 ms<br />
64 bytes from 202.159.121.1: icmp_seq=4 ttl=63 time=0.268 ms</p>
<p>— 202.159.121.1 ping statistics —<br />
4 packets transmitted, 4 received, 0% packet loss, time 2997ms<br />
rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms</p>
<p>7.testing untuk ngeping google.com untuk ngecek dns nya<br />
kalau muncul :<br />
PING google.com (216.239.39.99) 56(84) bytes of data.<br />
berarti dns kita untuk mgw dah bekerja, tapi kalau muncul :<br />
ping: unknown host google.com<br />
berarti dns yang kita isikan di /etc/resolve.conf masih salah,silahkan cek lagi ke ISP nya :)</p>
<p>nah bereskan sudah setting IP untuk mgw nya :)<br />
supaya mgw ini bisa sekaligus di gunakan sebagai ns server oleh client maka harus di install daemon bind atau daemon nameserver yang lain<br />
ataukalau sudah ada tinggal idupin Bind nya</p>
<p>[root@www root]# /etc/init.d/named restart<br />
Stopping named: [ OK ]<br />
Starting named: [ OK ]<br />
[root@www root]#chkconfig –level 2345 named on<br />
[root@www root]#</p>
<p>misalnya ip ke client adalah :<br />
192.168.0.1/24<br />
IP : 192.168.0.1<br />
netmask : 255.255.255.0<br />
broadcast : 192.168.0.255<br />
RANGE IP CLIENT : 192.168.0.2-192.168.0.254</p>
<p>Setting ip untuk eth1 (yang ke client)<br />
1.memberi IP 192.168.0.1 di eth1<br />
[root@mgw cachak]$ vi /etc/sysconfig/network-scripts/ifcfg-eth1<br />
lalu isi dengan :</p>
<p>DEVICE=eth1<br />
BOOTPROTO=static<br />
IPADDR=192.168.0.1<br />
NETMASK=255.255.255.0<br />
BROADCAST=192.168.0.255<br />
ONBOOT=yes<br />
USERCTL=no</p>
<p>lalu simpen dengan menekan :wq</p>
<p>2.Restart networknya</p>
<p>[root@mgw root]$ /etc/init.d/network restart<br />
Shutting down interface eth0: [ OK ]<br />
Shutting down interface eth1: [ OK ]<br />
Shutting down loopback interface: [ OK ]<br />
Disabling IPv4 packet forwarding: [ OK ]<br />
Setting network parameters: [ OK ]<br />
Bringing up loopback interface: [ OK ]<br />
Bringing up interface eth0: [ OK ]<br />
Bringing up interface eth1: [ OK ]</p>
<p>3.Testing dengan cara ping ip eth1<br />
[root@mgw cachak]$ ping 192.168.0.1<br />
PING 192.168.0.1 (192.168.0.1) 56(84) bytes of data.<br />
64 bytes from 192.168.0.1: icmp_seq=1 ttl=63 time=0.356 ms<br />
64 bytes from 192.168.0.1: icmp_seq=2 ttl=63 time=0.269 ms<br />
64 bytes from 192.168.0.1: icmp_seq=3 ttl=63 time=0.267 ms<br />
64 bytes from 192.168.0.1: icmp_seq=4 ttl=63 time=0.268 ms</p>
<p>— 192.168.0.1 ping statistics —<br />
4 packets transmitted, 4 received, 0% packet loss, time 2997ms<br />
rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms</p>
<p>Tinggal Setting IP computer client dengan ketentuan di bawah ini :</p>
<p>IP : 192.168.0.2 - 192.168.0.254<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1</p>
<p>misal :</p>
<p>Client01<br />
===============================<br />
IP : 192.168.0.2<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1</p>
<p>Client02<br />
===============================<br />
IP : 192.168.0.3<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1</p>
<p>dan seterusnya sesuai banyaknya client,yang berubah hanya IP<br />
untuk client windows maka setting IP di bagian Start Menu/Setting/Control Panel/Network</p>
<p>setelah di setting ip client, maka coba ping ke 192.168.0.1 dari client,kalau berhasil berarti client dan MGW nya sudah tersambung.</p>
<p>Setting MGW supaya client bisa internat dengan menggunakan NAT</p>
<p>1.Matikan iptablesnya</p>
<p>[root@mgw root]# /etc/init.d/iptables stop<br />
Flushing all chains: [ OK ]<br />
Removing user defined chains: [ OK ]<br />
Resetting built-in chains to the default ACCEPT policy: [ OK ]<br />
[root@mgw root]#</p>
<p>2.Tambahkan iptables untuk Source NAt sesuai dengan ip di eth0<br />
[root@mgw root]# /sbin/iptables -t nat -A POSTROUTING -o eth0 -s 192.168.0.0/24 -j SNAT –to-source 202.159.121.2<br />
[root@mgw root]# /sbin/iptables-save &#62; /etc/sysconfig/iptables<br />
[root@mgw root]# /etc/init.d/iptables restart<br />
Flushing all current rules and user defined chains: [ OK ]<br />
Clearing all current rules and user defined chains: [ OK ]<br />
Applying iptables firewall rules: [ OK ]<br />
[root@mgw root]# iptables-save</p>
<p>SNAT sudah,SNAT disini standar sekali dan gak ada proteksi<br />
untuk mengetest nya kita browser di client lalau buka google.com, kalau jalan berati kita sudah berhasil :)</p>
<p>nice article …</p>
<p>tambahan ajah nih,<br />
biasanya kesulitannya bukan masalah routingnya .. umumnya deteksi jenis kartu jaringan yang dipergunakan, misal pcmcia dan access point (ap) untuk pengguna wireless (kadang2 apnya perlu direstart setiap perubahan alat atau seting card baru … ^_^).<br />
terus .. untuk mempergunakan squid sebagai proxy local, kesulitannya pada setting msntauth pada direktori /etc/squid<br />
dan jangan dilupakan juga untuk setting transparant proxynya.<br />
jika ada kendala response ping juga, ada baiknya pada /etc/sysctl.conf ditambahin net.ipv4.conf.icmp_echo_ignore_all = 0 dan icmp_echo_ignore_broadcasts = 0</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Enaknya pake apa]]></title>
<link>http://wejick.wordpress.com/?p=66</link>
<pubDate>Fri, 16 May 2008 02:17:38 +0000</pubDate>
<dc:creator>wejick</dc:creator>
<guid>http://wejick.wordpress.com/?p=66</guid>
<description><![CDATA[Kemarin aku disbukan dengan penyakitku dan temenku (rahasia) yang banyak tanya tentang wingate. Prog]]></description>
<content:encoded><![CDATA[<p>Kemarin aku disbukan dengan penyakitku dan temenku (rahasia) yang banyak tanya tentang wingate. Program in banyak digunakan di daerahku waktu jamannya win9x ya karena windows itu suck di networking ya mungkin aja itu jaman keemaasn produk qbik itu. Tapi sekarang juga masih banyak yang pake, oke sih program ini keren tapi sayang menurutku interfacenya sedikit menakutkan bagi sebagian orang. Yang udah pernah pake pasti sependapat dengan aku kalau memang interfacenya rumit.</p>
<p>Wingate di daerahku sih banyak difungsikan sebagai gateway, firewall ama proxy tapi sebenarnya fiturnya juga lumayan banyak termasuk email server yang cukup bagus. Ini hasil copy paste dari qbik</p>
<blockquote><p><strong>Key Functions</strong><br />
WinGate allows you to:</p>
<ul style="margin-left:20px;margin-top:10px;">
<li>Provide secure and managed Internet access for your entire network via a single or multiple shared internet connections</li>
<li>Enforce advanced and flexible access-control and acceptable use policies</li>
<li>Monitor usage in real time, and maintain per-user and per-service audit logs.</li>
<li>Stop viruses, spam and inappropriate content from entering your network</li>
<li>Provide comprehensive internet and intranet email services.</li>
<li>Protect your servers from internal or external threats.</li>
<li>Improve network performance and responsiveness with web and DNS caching</li>
<li>Ease administration burdens on your internal networks.</li>
</ul>
</blockquote>
<p>Banyak juga fiturnya walau fitur yang ditulis lebih ke promosi (nggak nyata nih) coba lebih lengkap <a title="Dari wbik" href="http://www.wingate.com/product-wingate.php">di sini</a>. Pasti dong kalau pake wingate itu pasti pake windows dan wingate bisa dipakai sebagai alternative lisensi windows server edition yang lebih mahal CMIIW tapi kalo aku koreksi seperti ini:</p>
<p>Windows -&#62; Ya seperti banyak diketahui kalau windows itu memerlukan perawatan yang lebih memerlukan perhatian admin apalagi windows non server (bahkan win 2003 server rasanya) kalau udah beberapa bulan terasa melambat yang mungkin windowsnya minta direstart ato malah mungkin direinstall (capek deh).Selain itu juga seperti diketahui banyak orang kalau windows itu banyak disoroti karena masalah keamanannya. Harganya pun lumayan mahal.</p>
<p>Wingate -&#62; Gak tau ya perasaanku aja ato memang begini, menurutku interfacenya jelek dan membingungkan. Selain itu harganya juga lumyan mahal. <a title="Harganya selangit" href="http://www.wingate.com/pricing.php">Ini detail pricingnya</a>.</p>
<p>Sebenarnya banyak juga alternative yang lebih masuk akal dari pada menyediakan win(1.5jt)+wingate(7.5rb&#60;) enakan pake clarkconnect yang punya banyak fitur lebih dan juga lebih murah bahkan gratis selain itu lebih mudah dalam administrasi karena web based adminnya lumayan cantik. Dan juga selain tidak kalah (lebih malah) dalam hal performance, pricing dan fitur clarkconnect adalah OS opensource yang keren coba aja masuk ke <a title="Situsnya" href="http://www.clarkconnect.com">situsnya</a>. Atau anda ingin menggunakan yang lain ada juga juga kok yang gratis (banyak malah) nih:</p>
<ul>
<li><a title="EBox" href="http://en.wikipedia.org/wiki/EBox">eBox</a></li>
<li><a title="Endian Firewall" href="http://en.wikipedia.org/wiki/Endian_Firewall">Endian Firewall</a></li>
<li><a title="M0n0wall" href="http://en.wikipedia.org/wiki/M0n0wall">m0n0wall</a></li>
<li><a title="PfSense" href="http://en.wikipedia.org/wiki/PfSense">PfSense</a></li>
<li><a title="Shorewall" href="http://en.wikipedia.org/wiki/Shorewall">Shorewall</a></li>
<li><a title="Untangle" href="http://en.wikipedia.org/wiki/Untangle">Untangle</a></li>
</ul>
<p>Dan kelihatannya sih endian firewall keren juga.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Me and My Apple Macbook - Update 002]]></title>
<link>http://leebrownhill.wordpress.com/?p=43</link>
<pubDate>Wed, 14 May 2008 20:17:53 +0000</pubDate>
<dc:creator>leebrownhill</dc:creator>
<guid>http://leebrownhill.wordpress.com/?p=43</guid>
<description><![CDATA[Well before i begin this post, I have to say thank you to all that have commented on my previous pos]]></description>
<content:encoded><![CDATA[<p>Well before i begin this post, I have to say thank you to all that have commented on my previous post. Many of your comments pointed me in the right direction and at the very least, made feel that i was not alone in my Macbook woes and downfalls. Is this the way of the Mac community? Support, assist and co-operate? Well if so, I like it! But enough of the ramblings, I just wanted to say many thanks.</p>
<p>Okay, so lets get 'tucked in' to the 'main course' of this post. I wanted to give a brief update regarding the adventures of my Macbook and I. Or at least follow up on some of the topics and problems which i discussed in my last post.</p>
<p><strong>Wireless Connectivity</strong></p>
<p>Okay, so what is first? Well lets talk about the Wireless Network problems, or should i say lack of. I have to apologise to Apple on this one. But the trouble 'all' stemmed from a faulty router. No more than three or four days after my post, my work laptop (a Dell laptop running Vista Ultimate) started to have problems regarding the wireless network. Identical problems and more started to rear their ugly little 802.11g head even with this machine. Luckily a friend at work had a spare router hanging around and was good enough to let me lend it for a while. Guess what, no problems whatsoever since i have been using this different router. The Macbook, The Dell and even the Wii (this is not mine by the way) have seamlessly been able to connect each time to the router, as you would want and expect. So i feel i ought to say a HUGE sorry to Apple and more importantly, my precious little Macbook.</p>
<p><strong>Permission Problems</strong></p>
<p>Well i am also pleased to say that my problems regarding all things 'permissions' related appears to have gone too. I know that all these problems which i faced originated from 'BootCampGate' and the mess which i got myself into after that.</p>
<p>To cut a very long story short on this one, I can remember that two main things, or procedures rather, allowed me to solve this little but oh so annoying problem. These are -</p>
<p>1. I ran 'Disk Utility' several times. Initially, there were problems reported, and so naturally i selected the 'Fix' option and they went. I re-ran this each day after that for a couple of days and repeated the procedure. The problems found naturally became less each day until there were no more.</p>
<p>2. I changed the permissions on my 'Macintosh HD'. I do not know what i didn't do this initially. Worried i suspect that i may do more damage than good. However, all i literally did was to 'Get Info' on the disk add 'Read/Write' access for myself. Additionally, i also ensured that these changes were applied throughout all sub folders and files.</p>
<p>Looking back now at that previous post, i can see that i was overreacting hugely (which by the way, is nothing new really). I was just very frustrated at the time with what seemed at the time, consistent problems. But of course, they were not. Faulty hardware (the router) and my mess up (BootCampGate) were all to blame. Looking back, it had nothing to do with the Macbook or its ability to do what i wanted it to.</p>
<p><strong>Looking Forward</strong></p>
<p>So lets briefly go through what i have been doing with it since then. Well i can proudly say that i have been having a much better time with it. In fact, i have grown to really enjoy using my Mac.</p>
<p>The major addition to my arsenal of Mac software has been VM Fusion. This works beautifully, i have to say it really does work well. I am currently only using the Beta but so far, so good. I am using it to run the necessary evil which is Windows XP (that is actually said in jest, I am not one of those who will jump on Windows at any given chance. Mainly because it is now boring and quite frankly obvious to do so now). However, with that said, there is still something strange, something fundamentally wrong and something 'dirty' about hearing the Windows XP startup music coming from my Macbook speakers. (Oh dear, did i really just say that? Perhaps i have gone too far on that slippery Mac slope, perhaps i don't care) This software raises a very important question however, <em>why would you ever want or more importantly need to ever purchase a non Mac machine ever again?</em></p>
<p>Another mentionable addition is Mozy Backup. Now admittedly i am only using the free 2Gb option to backup the most important and critical parts of my Mac. These include my iCal, Address Book and other important documents. However, it works seamlessly so far. I see the little icon kick into action occasionally notifying me that it is 'doing its thing'. Without that and 'Growl' letting me know 'stuff' was happening, i really wouldn't notice it, which i guess is the way it should be. A very nice piece of software.</p>
<p>So there we have it, hopefully i do appear a little more 'upbeat' and hopeful regarding my Macbook throughout this post. I hope so, because i am. At this moment in time, I can NEVER see me going back to Windows, certainly not out of choice anyway.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[step instal linux router]]></title>
<link>http://ch4n.wordpress.com/?p=92</link>
<pubDate>Wed, 14 May 2008 15:50:42 +0000</pubDate>
<dc:creator>ch4n</dc:creator>
<guid>http://ch4n.wordpress.com/?p=92</guid>
<description><![CDATA[mohon koreksiannya ya hehehehehe
dunlut
]]></description>
<content:encoded><![CDATA[<p>mohon koreksiannya ya hehehehehe</p>
<p><a href="http://www.ziddu.com/download.php?uid=Zq2enJqrZa2bmZWtr6yZlJyiYa%2BWlZin1" target="_blank">dunlut</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Definitely Maybe]]></title>
<link>http://bahava.wordpress.com/?p=216</link>
<pubDate>Wed, 14 May 2008 03:21:04 +0000</pubDate>
<dc:creator>bahava</dc:creator>
<guid>http://bahava.wordpress.com/?p=216</guid>
<description><![CDATA[I had no plans for tonight.  If anything, I thought I would have a quiet night.  Instead, I ended up]]></description>
<content:encoded><![CDATA[<p>I had no plans for tonight.  If anything, I thought I would have a quiet night.  Instead, I ended up packing up my bike, staying on hold FOREVER for Comcast, meeting some nice bike shop people, going to Target for a few things, running into my brother at Target, going to get a router and chatting with Amy's roommates, dropping off my jacket for Amy, checking out the Coffeehouse, running into Britt who brought me to Tiffany, staying at the Coffeehouse to listen to Titus (*sigh*), texting Dohlen, chatting with Dohlen, saying good-night, chatting with Titus, buying his cd, and driving home happy.  Who knew!?  Right when I'm expecting a simple, quiet night, I get thrown all these opportunities and "circumstances" to chat with other people.  I also was humbled and treated graciously by the bike people--yay for nice bike people that didn't charge me!  I'm going there again!  Plus, there was a cute boy ;) I loved all of the other conversations I had tonight as well.  I really enjoy asking lots of questions and hearing what's been happening so the night of catch-up was great!  In other news, tomorrow, I get internet finally!  I also get to eat lunch out for free.  Sounds like a good day.  Maybe I'll update with some "deeper" thoughts than a running list of events that I said I would keep away from in my "About Me" page.  Such is life.  Maybe I'll update that...<br />
p.s. he got cute again!</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Let there be wireless]]></title>
<link>http://lkblandford.wordpress.com/?p=95</link>
<pubDate>Tue, 13 May 2008 03:30:41 +0000</pubDate>
<dc:creator>Laurie K. Blandford</dc:creator>
<guid>http://lkblandford.wordpress.com/?p=95</guid>
<description><![CDATA[And on the eighth day, God created the Internet.
Or maybe it was those guys from MIT. Either way, it]]></description>
<content:encoded><![CDATA[<p>And on the eighth day, God created the Internet.</p>
<p>Or maybe it was those guys from MIT. Either way, it feels like heaven to have it in my place.</p>
<p>It's a shame I had to deal with multiple phone calls, long automated menus and rude customer service to get it set up. A certain cable company representative talked to me like I was an idiot when she sarcastically asked if I knew the difference between a modem and a router (I told her I've done this before). It wasn't until the end of the day that another representative admitted they hadn't finished activating it yet - on purpose for ridiculous reasons beyond my comprehension.</p>
<p>I don't want to name any names - cough, Comcast, cough - but I wouldn't recommend that cable company to my worst enemy.</p>
<p>But I do have to say it's pretty cool to be able to walk anywhere in the house and have Internet. It's also nice to have a hot shower and a clean kitchen almost ready for use. As much as there is left to do around here, one thought kept creeping into my mind today: Wednesday afternoon.</p>
<p>I wasn't nervous about my meeting with The Fort Pierce Tribune editor until last night's nightmare. I wasn't dressed, couldn't get to my car for some reason and was running later and later for our appointment. I was so stressed in the dream I awoke heart pounding and soaked in sweat this morning.</p>
<p>Now I plan to be ready for the real deal by 9 a.m. You'll be the first to know how it goes.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[El FBI investiga a China por presuntos productos piratas de Cisco]]></title>
<link>http://computoparaterrenales.wordpress.com/?p=414</link>
<pubDate>Mon, 12 May 2008 23:10:42 +0000</pubDate>
<dc:creator>Rod</dc:creator>
<guid>http://computoparaterrenales.wordpress.com/?p=414</guid>
<description><![CDATA[El FBI dio aviso el viernes pasado de una investigación sobre la venta de productos de computo “p]]></description>
<content:encoded><![CDATA[<p><span>El FBI dio aviso el viernes pasado de una investigación sobre la venta de productos de computo “piratas” hechos en china para los Estados Unidos. Se han decomisado alrededor de 3500  dispositivos falsos por un valor de 3,5 millones de dólares aproximadamente.</span></p>
<p><span>Los productos decomisados incluyen las versiones piratas de routers, switches, y tarjetas de red de la marca Cisco, algunos de estos equipos habian sido enviados a contratistas de la defensa de los Estados Unidos y al mercado del sector privado</span></p>
<p>fuentes <a href="http://www.reuters.com/article/technologyNews/idUSN0952813820080510?feedType=RSS&#38;feedName=technologyNews">Reuter</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Resetting Router Settings]]></title>
<link>http://macroscopicfungi.wordpress.com/?p=16</link>
<pubDate>Mon, 12 May 2008 07:54:09 +0000</pubDate>
<dc:creator>Nathan</dc:creator>
<guid>http://macroscopicfungi.wordpress.com/?p=16</guid>
<description><![CDATA[There are times when we need to reset the router settings to the factory default.

Cannot login to r]]></description>
<content:encoded><![CDATA[<p>There are times when we need to reset the router settings to the factory default.</p>
<ul>
<li>Cannot login to router because of forgotten password</li>
<li>Settings are unrecoverable</li>
<li>Too many settings have been tampered with, and you want to start fresh</li>
<li>You may want to start fresh and will restore a backup configuration</li>
<li>Any other valid reason, lol :P</li>
</ul>
<p>To reset the router, there are two options, depending on the situation and hardware model:</p>
<ul>
<li>Login to the router administration page and select "Restore to factory settings"</li>
<li>Reset the router manually by pressing the reset button. To know more information how, visit: <a href="http://www.ehow.com/how_2110924_router-back-factory-default-settings.html" target="_blank">eHow.com: How to Reset Router</a></li>
</ul>
<p>Some things you may need to remember before resetting the router:</p>
<ul>
<li>Try to remember the default administrator site and login details. If you don't remember, you can find the list of the default user name and passwords for most routers here: <a href="http://www.routerpasswords.com/index.asp" target="_self">RouterPasswords.com</a></li>
<li>You must really be sure that you want or need to reset it :P</li>
</ul>
<p>After resetting the router, you may encounter a problem on not being able to login using the default router administration page. Usually the default address of this page is http://192.168.1.1 or http://192.168.0.1. One thing that may be causing the failure in accessing the web page is your computer IP settings. I had this problem when I restarted the router connecting the server to the internet. You may need to change the IP settings, that is, <strong>Obtain an IP address automatically</strong>, and <strong>Obtain DNS Server Address automatically</strong>. Without a DHCP server, the router will be the one to assign an IP address to the computer where you will change the router settings. After this step, you should be able to access the administration page and login successfully.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Dynamips : How to get 10% CPU load only !]]></title>
<link>http://rjaouen.wordpress.com/?p=71</link>
<pubDate>Sun, 11 May 2008 13:39:13 +0000</pubDate>
<dc:creator>niamor</dc:creator>
<guid>http://rjaouen.wordpress.com/?p=71</guid>
<description><![CDATA[Hello all,
I found a nice info about Dynamips today. With the IOS image mentionned below, you&#8217;]]></description>
<content:encoded><![CDATA[<p>Hello all,</p>
<p>I found a nice info about Dynamips today. With the IOS image mentionned below, you'll be able to run up to five 7200 routers and have a cpu load around 10% !!</p>
<table style="border-collapse:collapse;height:61px;" border="0" cellspacing="0" cellpadding="0" width="529"><col style="width:146pt;" width="195"></col> <col style="width:61pt;" width="81"></col> <col style="width:95pt;" width="126"></col></p>
<tbody>
<tr style="height:15.75pt;">
<td class="xl63" style="height:15.75pt;width:146pt;" width="195" height="21">IOS   Image<span> </span></td>
<td class="xl63" style="width:61pt;" width="81">IdlePC</td>
<td class="xl63" style="width:95pt;" width="126">%stable CPU Usage</td>
</tr>
<tr style="height:15pt;">
<td style="height:15pt;" height="20">c7200-jk9o3s-mz.124-7.bin</td>
<td>0x608049e8<span> </span></td>
<td>&#60;10%</td>
</tr>
<tr style="height:15pt;">
<td style="height:15pt;" height="20">c7200-pk9u2-mz[1].124-17.bin</td>
<td>0x60848e80<span> </span></td>
<td>&#60;9%</td>
</tr>
</tbody>
</table>
<p>Enjoy ;)</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Networking &amp; IT Security]]></title>
<link>http://finmeccanicainside.wordpress.com/?p=27</link>
<pubDate>Sat, 10 May 2008 14:21:15 +0000</pubDate>
<dc:creator>insidefnm</dc:creator>
<guid>http://finmeccanicainside.wordpress.com/?p=27</guid>
<description><![CDATA[da wikipedia:
Amtec S.p.A. è una società fondata nel 1980, con sede ad Piancastagnaio (SI).
Svilup]]></description>
<content:encoded><![CDATA[<p>da <a href="http://it.wikipedia.org/wiki/Amtec" target="_blank">wikipedia</a>:</p>
<p>Amtec S.p.A. è una società fondata nel 1980, con sede ad Piancastagnaio (SI).</p>
<p>Sviluppa e produce apparati hardware per comunicazioni di sicurezza, ed è attualmente focalizzata su Security Gateway per comunicazioni IP cifrate. Gli apparati ed il relativo software sono realizzati e testati in Italia, nei laboratori della società a Abbadia San Salvatore(SI)  - <a href="http://maps.google.it/maps?f=d&#38;hl=it&#38;geocode=&#38;saddr=&#38;daddr=42.883181,11.666751&#38;mra=mi&#38;mrsp=0&#38;sz=16&#38;sll=42.882238,11.668446&#38;sspn=0.006997,0.020084&#38;ie=UTF8&#38;ll=42.882049,11.672502&#38;spn=0.006997,0.020084&#38;t=h&#38;z=16">Mappa</a></p>
<p><a href="http://netpartners.elsagdatamat.com/">http://netpartners.elsagdatamat.com/</a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[ＩＯＳ]]></title>
<link>http://netengineer.wordpress.com/?p=9</link>
<pubDate>Sat, 10 May 2008 11:58:28 +0000</pubDate>
<dc:creator>tenshoku</dc:creator>
<guid>http://netengineer.wordpress.com/?p=9</guid>
<description><![CDATA[ＩＯＳはルーターを動かすＯＳのことです。
Windowsと違い、インタフェー]]></description>
<content:encoded><![CDATA[<p>ＩＯＳはルーターを動かすＯＳのことです。</p>
<p>Windowsと違い、インタフェースはなくコマンド入力をし、動作を指示するものです。</p>
<p>コマンドで行うメリットは細かな作業の短縮が出来より的確かつ、迅速にルーターに対して指示を行えるからです。</p>
<p>ルーターへは、直接つなぐコンソール接続と、外部からも設定を行える仮想端末（ＶＴＹ）接続がある。</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Install Webmin di Fedora 6]]></title>
<link>http://kebofunky.wordpress.com/?p=86</link>
<pubDate>Fri, 09 May 2008 23:05:49 +0000</pubDate>
<dc:creator>kebofunky</dc:creator>
<guid>http://kebofunky.wordpress.com/?p=86</guid>
<description><![CDATA[he..he..he.. dah brapa hari ini saya masih sibuk install cacti n mrtg&#8230; cuma ga sukses² ga tau]]></description>
<content:encoded><![CDATA[<p>he..he..he.. dah brapa hari ini saya masih sibuk install cacti n mrtg... cuma ga sukses² ga tau salahnya di mana..!!!</p>
<p>iseng aja.. saya coba install webmin, eh.. ternyata sukses... n gampang banget...!! :)</p>
<p>apa itu webmin rasanya ga perlu lagi saya jelaskan..!!! silahkan tannya aja ama om <a href="http://google.co.id" target="_blank">google</a> </p>
<p>1. # wget <a href="http://prdownloads.sourceforge.net/webadmin/webmin-1.410.tar.gz">http://prdownloads.sourceforge.net/webadmin/webmin-1.410.tar.gz</a></p>
<p>atau lihat source terbaru di <a href="http://www.webmin.com/download.html">http://www.webmin.com/download.html</a></p>
<p>2. # tar -zxvf webmin-1.410.tar.gz</p>
<p>3. # cd webmin-1.410</p>
<p>4.  # ./setup.sh</p>
<p>nah pada tahap ini anda akan melakukan sedikit configurasi..!!</p>
<p>***********************************************************************<br />
*            Welcome to the Webmin setup script, version 1.410        *<br />
***********************************************************************<br />
Webmin is a web-based interface that allows Unix-like operating<br />
systems and common Unix services to be easily administered.</p>
<p>Installing Webmin in /root/webmin-1.410 ...</p>
<p>***********************************************************************</p>
<p><!--more--><br />
Webmin uses separate directories for configuration files and log files.<br />
Unless you want to run multiple versions of Webmin at the same time<br />
you can just accept the defaults.</p>
<p>Config file directory [/etc/webmin]: <span style="color:#0000ff;">[enter]</span><br />
Log file directory [/var/webmin]: <span style="color:#0000ff;">[enter]</span></p>
<p>***********************************************************************<br />
Webmin is written entirely in Perl. Please enter the full path to the<br />
Perl 5 interpreter on your system.</p>
<p>Full path to perl (default /usr/bin/perl): <span style="color:#0000ff;">[enter]</span></p>
<p>Testing Perl ...<br />
Perl seems to be installed ok</p>
<p>***********************************************************************<br />
Operating system name:    Redhat Linux<br />
Operating system version: Fedora 6</p>
<p>***********************************************************************<br />
Webmin uses its own password protected web server to provide access<br />
to the administration programs. The setup script needs to know :<br />
 - What port to run the web server on. There must not be another<br />
   web server already using this port.<br />
 - The login name required to access the web server.<br />
 - The password required to access the web server.<br />
 - If the webserver should use SSL (if your system supports it).<br />
 - Whether to start webmin at boot time.</p>
<p>Web server port (default 10000):   <span style="color:#0000ff;">[enter]</span><br />
Login name (default admin): root <span style="color:#0000ff;">&#60;--- ( terserah anda ingin mengisi loginnya apa )<br />
</span>Login password:  <span style="color:#0000ff;">&#60;--- ( disini anda isikan password login webmin anda )<br />
</span>Password again: <span style="color:#0000ff;">&#60;--- ( ulangi password login webmin anda )</span><br />
Use SSL (y/n): y  <span style="color:#0000ff;">[enter]</span><br />
Start Webmin at boot time (y/n): y  <span style="color:#0000ff;">[enter]</span>***********************************************************************<br />
Creating web server config files..<br />
..done</p>
<p>Creating access control file..<br />
..done</p>
<p>Inserting path to perl into scripts..<br />
..done</p>
<p>Creating start and stop scripts..<br />
..done</p>
<p>Copying config files..<br />
..done</p>
<p>Configuring Webmin to start at boot time..<br />
Created init script /etc/rc.d/init.d/webmin<br />
..done</p>
<p>Creating uninstall script /etc/webmin/uninstall.sh ..<br />
..done</p>
<p>Changing ownership and permissions ..<br />
..done</p>
<p>Running postinstall scripts ..<br />
..done</p>
<p>Attempting to start Webmin mini web server..<br />
Starting Webmin server in /root/webmin-1.410<br />
..done</p>
<p>***********************************************************************<br />
Webmin has been installed and started successfully. Use your web<br />
browser to go to</p>
<p>  <a href="https://planet.web.id:10000/">https://planet.web.id:10000/</a></p>
<p>and login with the name and password you entered previously.</p>
<p>Because Webmin uses SSL for encryption only, the certificate<br />
it uses is not signed by one of the recognized CAs such as<br />
Verisign. When you first connect to the Webmin server, your<br />
browser will ask you if you want to accept the certificate<br />
presented, as it does not recognize the CA. Say yes.</p>
<p> </p>
<p>Oke.. selesai sudah...!!</p>
<p>sekarang silahkan login ke webmin anda.. <a href="http://localhost:10000">http://localhost:10000</a> atau <a href="http://ipserperanda:10000">http://ipserperanda:10000</a></p>
<p><!--StartFragment --><a class="logo" href="http://kebofunky.word.press.com/" target="_blank"><img src="http://idiotsfile.t35.com/webmin.jpg" border="0" alt="Powored By iDiots" width="525" height="373" /></a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Desenho]]></title>
<link>http://vhpop.wordpress.com/?p=33</link>
<pubDate>Fri, 09 May 2008 20:40:44 +0000</pubDate>
<dc:creator>vhpop</dc:creator>
<guid>http://vhpop.wordpress.com/?p=33</guid>
<description><![CDATA[Esse é o desenho da frente do router Adsl-500B que uso para acessar a internet pelo fato de estar ]]></description>
<content:encoded><![CDATA[<p>Esse é o desenho da frente do router Adsl-500B que uso para acessar a internet pelo fato de estar produzindo em Inkscape a pouco tempo achei que ficou até rasoavel<br />
<a href="http://imageshack.us"><img src="http://img115.imageshack.us/img115/9567/router500boe2.png" border="0" alt="Image Hosted by ImageShack.us" /></a></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Operazioni preliminari all'installazione di Ubuntu con Wubi]]></title>
<link>http://installarelinux.wordpress.com/?p=18</link>
<pubDate>Thu, 08 May 2008 23:20:46 +0000</pubDate>
<dc:creator>fabiofiorentino</dc:creator>
<guid>http://installarelinux.wordpress.com/?p=18</guid>
<description><![CDATA[Partendo sempre dal presupposto che questa guida deve essere FACILE e per principianti, ci tengo sub]]></description>
<content:encoded><![CDATA[<p>Partendo sempre dal presupposto che questa guida deve essere FACILE e per principianti, ci tengo subito a precisare che possedere delle schede e periferiche supportate nativamente da Ubuntu rende le cose davvero semplici. In caso contrario le cose si potrebbero complicare non poco.</p>
<p>C'è da sottolineare che sono stati fatti passi da gigante in fatto di supporto di driver negli ultimi anni.</p>
<p>Non so se sia stata fortuna o meno ma l'ho <strong>installato </strong>su 1 PC fisso (un intel P4 1600 Mhz con scheda ATI PCI) e 2 PC portatili (un Toshiba Satellite M30 - Intel P4 centrino 1700 Mhz - Nvidia GeForce FX 64 Mb con Windows XP Home Edition ed un HP Pavilion DVxxxx (non ricordo la sigla) comunque è un doppio processore AMD Turion64 bit, con scheda grafica Nvidia con su Windows Vista Premium Edition) e <strong>non ho avuto problemi con nessun driver</strong>, a parte la ATI che sebbene depotenziata faceva il suo sporco lavoro :)</p>
<p>Il mio consiglio è naturalmente quello di provare. Le possibilità di non avere problemi sono alte. Perdete meno di un'ora e, se non va, potete sempre riavviare su windows e disinstallarlo come una normale applicazione (troverete l'uninstaller nel drive in cui l'avete installato).</p>
<p>Ma se funziona avrete davanti un sistema <strong>sicuro</strong>, <strong>veloce </strong>e totalmente <strong>gratuito</strong>.</p>
<p>Sconsiglio anche chi dovrà usare un <strong>modem USB</strong>. Potreste riscontrare grossi problemi, che io qui non tratterò, do per scontato che abbiate tutti un router (anche <strong>WiFi</strong>) già connesso e funzionante.</p>
<blockquote><p>Detto questo basta <strong>formattare</strong> il drive su cui volete installare Ubuntu (ho provato sia in <strong>Fat32</strong> che in <strong>NTFS</strong>, il sistema funziona comunque). Io l'ho installato su un drive <strong>USB</strong> (davvero comodo a mio avviso, così non ruba spazio all'hard disk del portatile ormai un po' attempato) e funziona egregiamente.</p></blockquote>
<p>Naturalmente bisogna procurarsi una copia del programma. Lo potete fare qui</p>
<p><a title="ottenere Ubuntu" href="http://www.ubuntu-it.org/index.php?page=Ottenere_Ubuntu">http://www.ubuntu-it.org/index.php?page=Ottenere_Ubuntu</a></p>
<p>e masterizzarla. Otterrete un file .<strong>iso</strong> che potrete masterizzare con la vostra applicazione preferita.</p>
<p>Se non ne avete vi cito l'ottimo freeware <strong>CDBurnerXP</strong> che potete prelevare da qui <a title="CDBurnerXP Homepage" href="http://www.cdburnerxp.se/">www.cdburnerxp.se</a></p>
<p>Ottenuta la vostra bella copia gratuita di Ubuntu sarete pronti all'installazione.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Firmware v5.0 de WAPPro]]></title>
<link>http://wrouter.wordpress.com/?p=3</link>
<pubDate>Thu, 08 May 2008 05:26:05 +0000</pubDate>
<dc:creator>Gonzalo</dc:creator>
<guid>http://wrouter.wordpress.com/?p=3</guid>
<description><![CDATA[Hola a todos!
En esta sección les dejaré una version 5.0 del fw de WAPPro para RTL8186 que puede l]]></description>
<content:encoded><![CDATA[<p>Hola a todos!</p>
<p>En esta sección les dejaré una version 5.0 del fw de WAPPro para RTL8186 que puede licenciarse con el conocido generador de licencias de Btsector, el cual pueden descargarse de su blog '<strong>btsector.wordpress.com</strong>'; ya que la version 5.0 disponible en el site de WAPPro ya no puede crackearse con dicho generador (han cambiado el sistema de licenciamiento). Si la descargan desde el site de WAPPro no lograrán licenciarla y a esta si!</p>
<p><a title="WAPPro5.0 Download" href="http://rapidshare.com/files/113360765/WAPPro5.0.zip" target="_blank">WAPPro5.0 download</a></p>
<p>Saludos!</p>
<p>G-</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Iskald velkomst til ICE-router]]></title>
<link>http://petterhot.wordpress.com/?p=143</link>
<pubDate>Wed, 07 May 2008 16:52:17 +0000</pubDate>
<dc:creator>petterhot</dc:creator>
<guid>http://petterhot.wordpress.com/?p=143</guid>
<description><![CDATA[I dag var jeg så heldig å motta routeren til ICE (D-35) inn for test. For å si det slik, idéen b]]></description>
<content:encoded><![CDATA[<p>I dag var jeg så heldig å motta routeren til ICE (D-35) inn for test. For å si det slik, idéen bak hvordan routeren fungerer er ganske så hendig, hvor man bare skal plugge inn strømkabelen og få det trådløse nettverket til å fungere.</p>
<p>Men etter diverse forsøk selv fikk jeg ikke modemet til å gå og derfor måtte jeg ringe kundesupport. Etter videre forsøk, ble vi enig om at routeren var defekt. IP-adressene ville ikke, og til slutt var hele saken ubrukelig. Er det noen som har hatt den samme erfaringen med ICE-routere?</p>
<p>EDIT: Fikk vite i dag fra ICE at de hadde fått inn en hel <span><span style="font-family:Arial;color:#0000ff;font-size:x-small;"><span style="color:#000000;">batch med routere det var feil på.</span><br />
</span></span></p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[SImple Hotspot COnfig]]></title>
<link>http://harrychanputra.wordpress.com/?p=851</link>
<pubDate>Wed, 07 May 2008 06:27:20 +0000</pubDate>
<dc:creator>harrychanputra</dc:creator>
<guid>http://harrychanputra.wordpress.com/?p=851</guid>
<description><![CDATA[MMM      MMM       KKK                          TTTTTTTTTTT      KKK
MMMM    MMMM       KKK         ]]></description>
<content:encoded><![CDATA[<p>MMM      MMM       KKK                          TTTTTTTTTTT      KKK<br />
MMMM    MMMM       KKK                          TTTTTTTTTTT      KKK<br />
MMM MMMM MMM  III  KKK  KKK  RRRRRR     OOOOOO      TTT     III  KKK  KKK<br />
MMM  MM  MMM  III  KKKKK     RRR  RRR  OOO  OOO     TTT     III  KKKKK<br />
MMM      MMM  III  KKK KKK   RRRRRR    OOO  OOO     TTT     III  KKK KKK<br />
MMM      MMM  III  KKK  KKK  RRR  RRR   OOOOOO      TTT     III  KKK  KKK</p>
<p>MikroTik RouterOS 3.7 (c) 1999-2008       http://www.mikrotik.com/</p>
<p>[admin@8-hary] &#62; export<br />
# jan/01/1970 00:05:53 by RouterOS 3.7<br />
# software id = IPV8-PTT<br />
#<br />
/ip hotspot profile<br />
set default dns-name="" hotspot-address=0.0.0.0 html-directory=hotspot \<br />
http-cookie-lifetime=3d http-proxy=0.0.0.0:0 login-by=cookie,http-chap \<br />
name="default" rate-limit="" smtp-server=0.0.0.0 split-user-domain=no \<br />
use-radius=no<br />
add dns-name="" hotspot-address=10.5.50.1 html-directory=hotspot \<br />
http-cookie-lifetime=3d http-proxy=0.0.0.0:0 \<br />
login-by=cookie,http-chap,http-pap name="hsprof1" rate-limit="" \<br />
smtp-server=0.0.0.0 split-user-domain=no use-radius=no<br />
/ip hotspot user profile<br />
set default advertise=no idle-timeout=none keepalive-timeout=2m name="default" \<br />
open-status-page=always shared-users=1 status-autorefresh=1m \<br />
transparent-proxy=yes<br />
/ip ipsec proposal<br />
add auth-algorithms=sha1 disabled=no enc-algorithms=3des lifetime=30m \<br />
name="default" pfs-group=modp1024<br />
/interface ethernet<br />
set 0 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FC mtu=1500 name="Local" speed=100Mbps<br />
set 1 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FD mtu=1500 name="ether2" speed=100Mbps<br />
set 2 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FE mtu=1500 name="ether3" speed=100Mbps<br />
/interface wireless security-profiles<br />
set default authentication-types="" eap-methods=passthrough group-ciphers="" \<br />
group-key-update=5m interim-update=0s mode=none name="default" \<br />
radius-eap-accounting=no radius-mac-accounting=no \<br />
radius-mac-authentication=no radius-mac-caching=disabled \<br />
radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username \<br />
static-algo-0=none static-algo-1=none static-algo-2=none \<br />
static-algo-3=none static-key-0="" static-key-1="" static-key-2="" \<br />
static-key-3="" static-sta-private-algo=none static-sta-private-key="" \<br />
static-transmit-key=key-0 supplicant-identity="MikroTik" \<br />
tls-certificate=none tls-mode=no-certificates unicast-ciphers="" \<br />
wpa-pre-shared-key="" wpa2-pre-shared-key=""<br />
add authentication-types=wpa-psk group-ciphers=tkip group-key-update=5m \<br />
interim-update=0s mode=dynamic-keys name="profile1" \<br />
radius-eap-accounting=no radius-mac-accounting=no \<br />
radius-mac-authentication=no radius-mac-caching=disabled \<br />
radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username \<br />
static-algo-0=none static-algo-1=none static-algo-2=none \<br />
static-algo-3=none static-key-0="" static-key-1="" static-key-2="" \<br />
static-key-3="" static-sta-private-algo=none static-sta-private-key="" \<br />
static-transmit-key=key-0 supplicant-identity="" tls-certificate=none \<br />
tls-mode=no-certificates unicast-ciphers=tkip \<br />
wpa-pre-shared-key="mikrotik" wpa2-pre-shared-key=""<br />
/ppp profile<br />
set default change-tcp-mss=yes comment="" name="default" only-one=default \<br />
use-compression=default use-encryption=default use-vj-compression=default<br />
set default-encryption change-tcp-mss=yes comment="" name="default-encryption" \<br />
only-one=default use-compression=default use-encryption=yes \<br />
use-vj-compression=default<br />
/routing bgp instance<br />
set default as=65530 client-to-client-reflection=yes comment="" disabled=no \<br />
ignore-as-path-len=no name="default" out-filter="" \<br />
redistribute-connected=no redistribute-ospf=no redistribute-other-bgp=no \<br />
redistribute-rip=no redistribute-static=no router-id=0.0.0.0<br />
/routing ospf area<br />
add area-id=0.0.0.0 authentication=none disabled=no name="backbone" \<br />
type=default<br />
/ip pool<br />
add name="hs-pool-2" ranges=10.5.50.2-10.5.50.254<br />
/port<br />
set 0 baud-rate=115200 data-bits=8 flow-control=hardware name="serial0" \<br />
parity=none stop-bits=1<br />
/queue type<br />
set default kind=pfifo name="default" pfifo-limit=50<br />
set ethernet-default kind=pfifo name="ethernet-default" pfifo-limit=50<br />
set wireless-default kind=sfq name="wireless-default" sfq-allot=1514 \<br />
sfq-perturb=5<br />
set synchronous-default kind=red name="synchronous-default" \<br />
red-avg-packet=1000 red-burst=20 red-limit=60 red-max-threshold=50 \<br />
red-min-threshold=10<br />
set hotspot-default kind=sfq name="hotspot-default" sfq-allot=1514 \<br />
sfq-perturb=5<br />
set default-small kind=pfifo name="default-small" pfifo-limit=10<br />
/snmp<br />
set contact="" enabled=no engine-boots=0 engine-id="" location="" \<br />
time-window=15 trap-sink=0.0.0.0 trap-version=1<br />
/snmp community<br />
set public address=0.0.0.0/0 authentication-password="" \<br />
authentication-protocol=MD5 encryption-password="" encryption-protocol=DES \<br />
name="public" read-access=yes security=none<br />
/system logging action<br />
set memory memory-lines=100 memory-stop-on-full=no name="memory" target=memory<br />
set disk disk-lines=100 disk-stop-on-full=no name="disk" target=disk<br />
set echo name="echo" remember=yes target=echo<br />
set remote name="remote" remote=0.0.0.0:514 target=remote<br />
/user group<br />
add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,sn\<br />
iff,!ftp,!write,!policy<br />
add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password\<br />
,web,sniff,!ftp,!policy<br />
add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbo\<br />
x,password,web,sniff<br />
/ip dhcp-server<br />
add address-pool=hs-pool-2 authoritative=after-2sec-delay bootp-support=static \<br />
disabled=no interface=ether2 lease-time=1h name="dhcp1"<br />
/ip dhcp-server config<br />
set store-leases-disk=5m<br />
/ip dhcp-server network<br />
add address=10.5.50.0/24 comment="hotspot network" gateway=10.5.50.1<br />
/ip hotspot<br />
add address-pool=hs-pool-2 addresses-per-mac=2 disabled=no idle-timeout=5m \<br />
interface=ether2 keepalive-timeout=none name="hotspot1" profile=hsprof1<br />
/ip hotspot service-port<br />
set ftp disabled=no ports=21<br />
/ip hotspot user<br />
add comment="" disabled=no name="jangkrik" password="123456" profile=dosen \<br />
server=hotspot1<br />
/ip hotspot user profile<br />
add address-pool=hs-pool-2 advertise=yes advertise-interval=10s \<br />
advertise-timeout=5s advertise-url=http://harrychanputra.wordpress.com \<br />
idle-timeout=none keepalive-timeout=2m name="dosen" \<br />
open-status-page=always rate-limit="64k/64k" shared-users=1 \<br />
status-autorefresh=10s transparent-proxy=yes<br />
/tool user-manager customer<br />
add comment="" disabled=no login="admin" parent=admin password="" \<br />
paypal-accept-pending=no paypal-allowed=no paypal-secure-response=no \<br />
permissions=owner signup-allowed=no subscriber=admin time-zone=+00:00<br />
/system routerboard settings<br />
set baud-rate=115200 boot-delay=2s boot-device=nand-if-fail-then-ethernet \<br />
boot-protocol=bootp enable-jumper-reset=yes enter-setup-on=any-key<br />
/interface wireless<br />
set 0 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no \<br />
antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b/g \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled \<br />
comment="Wireles 1 Ke Backbone" compression=no country=no_country_set \<br />
default-ap-tx-limit=0 default-authentication=yes default-client-tx-limit=0 \<br />
default-forwarding=yes dfs-mode=none disable-running-check=no disabled=no \<br />
disconnect-timeout=3s frame-lifetime=0 frequency=2457 \<br />
frequency-mode=manual-txpower hide-ssid=no hw-retries=4 \<br />
mac-address=00:0C:42:1B:96:50 max-station-count=2007 mode=station mtu=1500 \<br />
name="wlan1" noise-floor-threshold=default on-fail-retry-time=100ms \<br />
periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 \<br />
radio-name="000C421B9650" rate-set=default scan-list=default \<br />
security-profile=profile1 ssid="training" \<br />
station-bridge-clone-mac=00:00:00:00:00:00 \<br />
supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default \<br />
update-stats-interval=disabled wds-cost-range=50-150 \<br />
wds-default-bridge=none wds-default-cost=100 wds-ignore-ssid=no \<br />
wds-mode=disabled wmm-support=disabled<br />
set 1 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no \<br />
antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled comment="" \<br />
compression=no country=no_country_set default-ap-tx-limit=0 \<br />
default-authentication=yes default-client-tx-limit=0 \<br />
default-forwarding=yes dfs-mode=none disable-running-check=no disabled=yes \<br />
disconnect-timeout=3s frame-lifetime=0 frequency=2457 \<br />
frequency-mode=manual-txpower hide-ssid=no hw-retries=4 \<br />
mac-address=00:0C:42:1B:96:9B max-station-count=2007 mode=station mtu=1500 \<br />
name="wlan2" noise-floor-threshold=default on-fail-retry-time=100ms \<br />
periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 \<br />
radio-name="000C421B969B" rate-set=default scan-list=default \<br />
security-profile=default ssid="week4" \<br />
station-bridge-clone-mac=00:00:00:00:00:00 \<br />
supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default \<br />
update-stats-interval=disabled wds-cost-range=50-150 \<br />
wds-default-bridge=none wds-default-cost=100 wds-ignore-ssid=no \<br />
wds-mode=disabled wmm-support=disabled<br />
/interface wireless align<br />
set active-mode=yes audio-max=-20 audio-min=-100 \<br />
audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 \<br />
frame-size=300 frames-per-second=25 receive-all=no ssid-all=no<br />
/interface wireless sniffer<br />
set channel-time=200ms file-limit=10 file-name="" memory-limit=10 \<br />
multiple-channels=no only-headers=no receive-errors=no \<br />
streaming-enabled=no streaming-max-rate=0 streaming-server=0.0.0.0<br />
/interface wireless snooper<br />
set channel-time=200ms multiple-channels=yes receive-errors=no<br />
/interface l2tp-server server<br />
set authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption \<br />
enabled=no max-mru=1460 max-mtu=1460 mrru=disabled<br />
/interface ovpn-server server<br />
set auth=sha1,md5 certificate=none cipher=blowfish128,aes128 \<br />
default-profile=default enabled=no keepalive-timeout=60 \<br />
mac-address=FE:9D:9C:6A:E6:8D max-mtu=1500 mode=ip netmask=24 port=1194 \<br />
require-client-certificate=no<br />
/interface pptp-server server<br />
set authentication=mschap1,mschap2 default-profile=default-encryption \<br />
enabled=no keepalive-timeout=30 max-mru=1460 max-mtu=1460 mrru=disabled<br />
/ppp aaa<br />
set accounting=yes interim-update=0s use-radius=no<br />
/routing mme<br />
set bidirectional-timeout=2 gateway-class=none gateway-keepalive=1m \<br />
gateway-selection=no-gateway origination-interval=5s \<br />
preferred-gateway=0.0.0.0 timeout=1m ttl=50<br />
/routing ospf<br />
set distribute-default=never metric-bgp=20 metric-connected=20 \<br />
metric-default=1 metric-rip=20 metric-static=20 mpls-te-area=unspecified \<br />
mpls-te-router-id=unspecified redistribute-bgp=no \<br />
redistribute-connected=no redistribute-rip=no redistribute-static=no \<br />
router-id=0.0.0.0<br />
/routing rip<br />
set distribute-default=never garbage-timer=2m metric-bgp=1 metric-connected=1 \<br />
metric-default=1 metric-ospf=1 metric-static=1 redistribute-bgp=no \<br />
redistribute-connected=no redistribute-ospf=no redistribute-static=no \<br />
timeout-timer=3m update-timer=30s<br />
/interface bridge settings<br />
set use-ip-firewall=no use-ip-firewall-for-vlan=no<br />
/ip accounting<br />
set account-local-traffic=no enabled=no threshold=256<br />
/ip accounting web-access<br />
set accessible-via-web=no address=0.0.0.0/0<br />
/ip address<br />
add address=192.168.8.1/24 broadcast=192.168.8.255 comment="" disabled=no \<br />
interface=Local network=192.168.8.0<br />
add address=10.10.10.8/24 broadcast=10.10.10.255 comment="" disabled=no \<br />
interface=wlan1 network=10.10.10.0<br />
add address=10.5.50.1/24 broadcast=10.5.50.255 comment="hotspot network" \<br />
disabled=no interface=ether2 network=10.5.50.0<br />
/ip dns<br />
set allow-remote-requests=yes cache-max-ttl=1w cache-size=2048KiB \<br />
max-udp-packet-size=512 primary-dns=10.100.100.1 secondary-dns=0.0.0.0<br />
/ip firewall connection tracking<br />
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s \<br />
tcp-close-wait-timeout=10s tcp-established-timeout=1d \<br />
tcp-fin-wait-timeout=10s tcp-last-ack-timeout=10s \<br />
tcp-syn-received-timeout=5s tcp-syn-sent-timeout=5s tcp-syncookie=no \<br />
tcp-time-wait-timeout=10s udp-stream-timeout=3m udp-timeout=10s<br />
/ip firewall filter<br />
add action=passthrough chain=unused-hs-chain comment="place hotspot rules \<br />
here" disabled=yes<br />
/ip firewall nat<br />
add action=passthrough chain=unused-hs-chain comment="place hotspot rules \<br />
here" disabled=yes<br />
add action=masquerade chain=srcnat comment="" disabled=no out-interface=wlan1<br />
add action=masquerade chain=srcnat comment="masquerade hotspot network" \<br />
disabled=no src-address=10.5.50.0/24<br />
/ip firewall service-port<br />
set ftp disabled=no ports=21<br />
set tftp disabled=no ports=69<br />
set irc disabled=no ports=6667<br />
set h323 disabled=no<br />
set sip disabled=no<br />
set pptp disabled=no<br />
/ip neighbor discovery<br />
set Local discover=yes<br />
set ether2 discover=yes<br />
set ether3 discover=yes<br />
set wlan1 discover=no<br />
set wlan2 discover=no<br />
/ip proxy<br />
set always-from-cache=no cache-administrator="webmaster" cache-drive=system \<br />
cache-hit-dscp=4 cache-on-disk=no enabled=no max-cache-size=none \<br />
max-client-connections=600 max-fresh-time=3d max-server-connections=600 \<br />
parent-proxy=0.0.0.0 parent-proxy-port=0 port=8080 \<br />
serialize-connections=no src-address=0.0.0.0<br />
/ip route<br />
add comment="" disabled=no distance=1 dst-address=0.0.0.0/0 \<br />
gateway=10.10.10.100 scope=30 target-scope=10<br />
/ip service<br />
set telnet address=0.0.0.0/0 disabled=no port=23<br />
set ftp address=0.0.0.0/0 disabled=no port=21<br />
set www address=0.0.0.0/0 disabled=no port=80<br />
set ssh address=0.0.0.0/0 disabled=no port=22<br />
set www-ssl address=0.0.0.0/0 certificate=none disabled=yes port=443<br />
set api address=0.0.0.0/0 disabled=yes port=8728<br />
set winbox address=0.0.0.0/0 disabled=no port=8291<br />
/ip socks<br />
set connection-idle-timeout=2m enabled=no max-connections=200 port=1080<br />
/ip traffic-flow<br />
set active-flow-timeout=30m cache-entries=4k enabled=no \<br />
inactive-flow-timeout=15s interfaces=all<br />
/ip upnp<br />
set allow-disable-external-interface=yes enabled=no show-dummy-rule=yes<br />
/queue interface<br />
set Local queue=ethernet-default<br />
set ether2 queue=ethernet-default<br />
set ether3 queue=ethernet-default<br />
set wlan1 queue=wireless-default<br />
set wlan2 queue=wireless-default<br />
/radius incoming<br />
set accept=no port=1700<br />
/system clock manual<br />
set dst-delta=+00:00 dst-end="jan/01/1970 00:00:00" dst-start="jan/01/1970 \<br />
00:00:00" time-zone=+00:00<br />
/system console<br />
add disabled=no port=serial0 term="vt102"<br />
/system health<br />
set fan-mode=auto use-fan=main<br />
/system identity<br />
set name="8-hary"<br />
/system logging<br />
add action=memory disabled=no prefix="" topics=info<br />
add action=memory disabled=no prefix="" topics=error<br />
add action=memory disabled=no prefix="" topics=warning<br />
add action=echo disabled=no prefix="" topics=critical<br />
/system note<br />
set note="" show-at-login=yes<br />
/system ntp client<br />
set enabled=no mode=broadcast primary-ntp=0.0.0.0 secondary-ntp=0.0.0.0<br />
/system upgrade mirror<br />
set check-interval=1d enabled=no primary-server=0.0.0.0 \<br />
secondary-server=0.0.0.0 user=""<br />
/system watchdog<br />
set auto-send-supout=no automatic-supout=yes no-ping-delay=5m \<br />
watch-address=none watchdog-timer=yes<br />
/tool bandwidth-server<br />
set allocate-udp-ports-from=2000 authenticate=yes enabled=yes max-sessions=10<br />
/tool e-mail<br />
set from="&#60;&#62;" server=0.0.0.0<br />
/tool graphing<br />
set store-every=5min<br />
/tool mac-server<br />
add disabled=no interface=all<br />
/tool mac-server ping<br />
set enabled=yes<br />
/tool sniffer<br />
set file-limit=10 file-name="" filter-address1=0.0.0.0/0:0-65535 \<br />
filter-address2=0.0.0.0/0:0-65535 filter-protocol=ip-only \<br />
filter-stream=yes interface=all memory-limit=10 only-headers=no \<br />
streaming-enabled=no streaming-server=0.0.0.0<br />
/user<br />
add address=0.0.0.0/0 comment="system default user" disabled=no group=full \<br />
name="admin"<br />
/user aaa<br />
set accounting=yes default-group=read interim-update=0s use-radius=no<br />
[admin@8-hary] &#62;</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Simple BGP Mik COnfig]]></title>
<link>http://harrychanputra.wordpress.com/?p=850</link>
<pubDate>Wed, 07 May 2008 06:11:17 +0000</pubDate>
<dc:creator>harrychanputra</dc:creator>
<guid>http://harrychanputra.wordpress.com/?p=850</guid>
<description><![CDATA[[admin@8-hary] &gt; export
# jan/01/1970 01:08:03 by RouterOS 3.7
# software id = IPV8-PTT
#
/ip hot]]></description>
<content:encoded><![CDATA[<p>[admin@8-hary] &#62; export<br />
# jan/01/1970 01:08:03 by RouterOS 3.7<br />
# software id = IPV8-PTT<br />
#<br />
/ip hotspot profile<br />
set default dns-name="" hotspot-address=0.0.0.0 html-directory=hotspot http-cookie-lifetime=3d http-proxy=0.0.0.0:0 login-by=cookie,http-chap name="default" \<br />
rate-limit="" smtp-server=0.0.0.0 split-user-domain=no use-radius=no<br />
/ip hotspot user profile<br />
set default advertise=no idle-timeout=none keepalive-timeout=2m name="default" open-status-page=always shared-users=1 status-autorefresh=1m \<br />
transparent-proxy=yes<br />
/ip ipsec proposal<br />
add auth-algorithms=sha1 disabled=no enc-algorithms=3des lifetime=30m name="default" pfs-group=modp1024<br />
/interface ethernet<br />
set 0 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes mac-address=00:0C:42:21:AD:FC mtu=1500 name="Local" speed=100Mbps<br />
set 1 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes mac-address=00:0C:42:21:AD:FD mtu=1500 name="ether2" speed=100Mbps<br />
set 2 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes mac-address=00:0C:42:21:AD:FE mtu=1500 name="ether3" speed=100Mbps<br />
/interface wireless security-profiles<br />
set default authentication-types="" eap-methods=passthrough group-ciphers="" group-key-update=5m interim-update=0s mode=none name="default" \<br />
radius-eap-accounting=no radius-mac-accounting=no radius-mac-authentication=no radius-mac-caching=disabled radius-mac-format=XX:XX:XX:XX:XX:XX \<br />
radius-mac-mode=as-username static-algo-0=none static-algo-1=none static-algo-2=none static-algo-3=none static-key-0="" static-key-1="" static-key-2="" \<br />
static-key-3="" static-sta-private-algo=none static-sta-private-key="" static-transmit-key=key-0 supplicant-identity="MikroTik" tls-certificate=none \<br />
tls-mode=no-certificates unicast-ciphers="" wpa-pre-shared-key="" wpa2-pre-shared-key=""<br />
add authentication-types=wpa-psk group-ciphers=tkip group-key-update=5m interim-update=0s mode=dynamic-keys name="profile1" radius-eap-accounting=no \<br />
radius-mac-accounting=no radius-mac-authentication=no radius-mac-caching=disabled radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username \<br />
static-algo-0=none static-algo-1=none static-algo-2=none static-algo-3=none static-key-0="" static-key-1="" static-key-2="" static-key-3="" \<br />
static-sta-private-algo=none static-sta-private-key="" static-transmit-key=key-0 supplicant-identity="" tls-certificate=none tls-mode=no-certificates \<br />
unicast-ciphers=tkip wpa-pre-shared-key="mikrotik" wpa2-pre-shared-key=""<br />
/ppp profile<br />
set default change-tcp-mss=yes comment="" name="default" only-one=default use-compression=default use-encryption=default use-vj-compression=default<br />
set default-encryption change-tcp-mss=yes comment="" name="default-encryption" only-one=default use-compression=default use-encryption=yes \<br />
use-vj-compression=default<br />
/routing bgp instance<br />
set default as=65008 client-to-client-reflection=yes comment="" disabled=no ignore-as-path-len=no name="default" out-filter="" redistribute-connected=yes \<br />
redistribute-ospf=no redistribute-other-bgp=no redistribute-rip=no redistribute-static=yes router-id=0.0.0.0<br />
/routing ospf area<br />
add area-id=0.0.0.0 authentication=none disabled=no name="backbone" type=default<br />
/port<br />
set 0 baud-rate=115200 data-bits=8 flow-control=hardware name="serial0" parity=none stop-bits=1<br />
/queue type<br />
set default kind=pfifo name="default" pfifo-limit=50<br />
set ethernet-default kind=pfifo name="ethernet-default" pfifo-limit=50<br />
set wireless-default kind=sfq name="wireless-default" sfq-allot=1514 sfq-perturb=5<br />
set synchronous-default kind=red name="synchronous-default" red-avg-packet=1000 red-burst=20 red-limit=60 red-max-threshold=50 red-min-threshold=10<br />
set hotspot-default kind=sfq name="hotspot-default" sfq-allot=1514 sfq-perturb=5<br />
set default-small kind=pfifo name="default-small" pfifo-limit=10<br />
/snmp<br />
set contact="" enabled=no engine-boots=0 engine-id="" location="" time-window=15 trap-sink=0.0.0.0 trap-version=1<br />
/snmp community<br />
set public address=0.0.0.0/0 authentication-password="" authentication-protocol=MD5 encryption-password="" encryption-protocol=DES name="public" \<br />
read-access=yes security=none<br />
/system logging action<br />
set memory memory-lines=100 memory-stop-on-full=no name="memory" target=memory<br />
set disk disk-lines=100 disk-stop-on-full=no name="disk" target=disk<br />
set echo name="echo" remember=yes target=echo<br />
set remote name="remote" remote=0.0.0.0:514 target=remote<br />
/user group<br />
add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,sniff,!ftp,!write,!policy<br />
add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password,web,sniff,!ftp,!policy<br />
add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbox,password,web,sniff<br />
/ip dhcp-server config<br />
set store-leases-disk=5m<br />
/ip hotspot service-port<br />
set ftp disabled=no ports=21<br />
/tool user-manager customer<br />
add comment="" disabled=no login="admin" parent=admin password="" paypal-accept-pending=no paypal-allowed=no paypal-secure-response=no permissions=owner \<br />
signup-allowed=no subscriber=admin time-zone=+00:00<br />
/system routerboard settings<br />
set baud-rate=115200 boot-delay=2s boot-device=nand-if-fail-then-ethernet boot-protocol=bootp enable-jumper-reset=yes enter-setup-on=any-key<br />
/interface wireless<br />
set 0 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b/g \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled comment="Wireles 1 Ke Backbone" compression=no country=no_country_set default-ap-tx-limit=0 \<br />
default-authentication=yes default-client-tx-limit=0 default-forwarding=yes dfs-mode=none disable-running-check=no disabled=no disconnect-timeout=3s \<br />
frame-lifetime=0 frequency=2457 frequency-mode=manual-txpower hide-ssid=no hw-retries=4 mac-address=00:0C:42:1B:96:50 max-station-count=2007 mode=station \<br />
mtu=1500 name="wlan1" noise-floor-threshold=default on-fail-retry-time=100ms periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 radio-name="000C421B9650" rate-set=default scan-list=default security-profile=profile1 \<br />
ssid="training" station-bridge-clone-mac=00:00:00:00:00:00 supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default update-stats-interval=disabled wds-cost-range=50-150 wds-default-bridge=none \<br />
wds-default-cost=100 wds-ignore-ssid=no wds-mode=disabled wmm-support=disabled<br />
set 1 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled comment="" compression=no country=no_country_set default-ap-tx-limit=0 \<br />
default-authentication=yes default-client-tx-limit=0 default-forwarding=yes dfs-mode=none disable-running-check=no disabled=yes disconnect-timeout=3s \<br />
frame-lifetime=0 frequency=2457 frequency-mode=manual-txpower hide-ssid=no hw-retries=4 mac-address=00:0C:42:1B:96:9B max-station-count=2007 mode=station \<br />
mtu=1500 name="wlan2" noise-floor-threshold=default on-fail-retry-time=100ms periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 radio-name="000C421B969B" rate-set=default scan-list=default security-profile=default ssid="week4" \<br />
station-bridge-clone-mac=00:00:00:00:00:00 supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default update-stats-interval=disabled wds-cost-range=50-150 wds-default-bridge=none \<br />
wds-default-cost=100 wds-ignore-ssid=no wds-mode=disabled wmm-support=disabled<br />
/interface wireless align<br />
set active-mode=yes audio-max=-20 audio-min=-100 audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 frame-size=300 frames-per-second=25 \<br />
receive-all=no ssid-all=no<br />
/interface wireless sniffer<br />
set channel-time=200ms file-limit=10 file-name="" memory-limit=10 multiple-channels=no only-headers=no receive-errors=no streaming-enabled=no \<br />
streaming-max-rate=0 streaming-server=0.0.0.0<br />
/interface wireless snooper<br />
set channel-time=200ms multiple-channels=yes receive-errors=no<br />
/interface l2tp-server server<br />
set authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption enabled=no max-mru=1460 max-mtu=1460 mrru=disabled<br />
/interface ovpn-server server<br />
set auth=sha1,md5 certificate=none cipher=blowfish128,aes128 default-profile=default enabled=no keepalive-timeout=60 mac-address=FE:2B:6C:78:F2:FD \<br />
max-mtu=1500 mode=ip netmask=24 port=1194 require-client-certificate=no<br />
/interface pptp-server server<br />
set authentication=mschap1,mschap2 default-profile=default-encryption enabled=no keepalive-timeout=30 max-mru=1460 max-mtu=1460 mrru=disabled<br />
/ppp aaa<br />
set accounting=yes interim-update=0s use-radius=no<br />
/routing bgp network<br />
add disabled=yes instance=default network=0.0.0.0/0 synchronize=yes<br />
/routing bgp peer<br />
add address-families=ip comment="" disabled=no hold-time=5s in-filter=accept-all instance=default multihop=yes name="peer1" nexthop-choice=default \<br />
out-filter=accept-all remote-address=10.10.10.100 remote-as=65000 route-reflect=yes tcp-md5-key="" ttl=255<br />
add address-families=ip comment="" disabled=no hold-time=5s in-filter=accept-all instance=default multihop=yes name="peer2" nexthop-choice=default \<br />
out-filter=accept-all remote-address=10.10.4.1 remote-as=65007 route-reflect=yes tcp-md5-key="" ttl=255<br />
/routing filter<br />
add action=accept chain=accept-all comment="" disabled=no invert-match=no prefix=0.0.0.0/0 prefix-length=0-32<br />
/routing mme<br />
set bidirectional-timeout=2 gateway-class=none gateway-keepalive=1m gateway-selection=no-gateway origination-interval=5s preferred-gateway=0.0.0.0 timeout=1m \<br />
ttl=50<br />
/routing ospf<br />
set distribute-default=never metric-bgp=20 metric-connected=20 metric-default=1 metric-rip=20 metric-static=20 mpls-te-area=unspecified \<br />
mpls-te-router-id=unspecified redistribute-bgp=no redistribute-connected=no redistribute-rip=no redistribute-static=no router-id=0.0.0.0<br />
/routing rip<br />
set distribute-default=never garbage-timer=2m metric-bgp=1 metric-connected=1 metric-default=1 metric-ospf=1 metric-static=1 redistribute-bgp=no \<br />
redistribute-connected=no redistribute-ospf=no redistribute-static=no timeout-timer=3m update-timer=30s<br />
/interface bridge settings<br />
set use-ip-firewall=no use-ip-firewall-for-vlan=no<br />
/ip accounting<br />
set account-local-traffic=no enabled=no threshold=256<br />
/ip accounting web-access<br />
set accessible-via-web=no address=0.0.0.0/0<br />
/ip address<br />
add address=192.168.8.1/24 broadcast=192.168.8.255 comment="" disabled=no interface=Local network=192.168.8.0<br />
add address=10.10.10.8/24 broadcast=10.10.10.255 comment="" disabled=no interface=wlan1 network=10.10.10.0<br />
add address=10.10.4.2/24 broadcast=10.10.4.255 comment="" disabled=no interface=ether2 network=10.10.4.0<br />
/ip dns<br />
set allow-remote-requests=yes cache-max-ttl=1w cache-size=2048KiB max-udp-packet-size=512 primary-dns=10.100.100.1 secondary-dns=0.0.0.0<br />
/ip firewall connection tracking<br />
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s tcp-close-wait-timeout=10s tcp-established-timeout=1d tcp-fin-wait-timeout=10s \<br />
tcp-last-ack-timeout=10s tcp-syn-received-timeout=5s tcp-syn-sent-timeout=5s tcp-syncookie=no tcp-time-wait-timeout=10s udp-stream-timeout=3m \<br />
udp-timeout=10s<br />
/ip firewall nat<br />
add action=masquerade chain=srcnat comment="" disabled=yes out-interface=wlan1<br />
/ip firewall service-port<br />
set ftp disabled=no ports=21<br />
set tftp disabled=no ports=69<br />
set irc disabled=no ports=6667<br />
set h323 disabled=no<br />
set sip disabled=no<br />
set pptp disabled=no<br />
/ip neighbor discovery<br />
set Local discover=yes<br />
set ether2 discover=yes<br />
set ether3 discover=yes<br />
set wlan1 discover=no<br />
set wlan2 discover=no<br />
/ip proxy<br />
set always-from-cache=no cache-administrator="webmaster" cache-drive=system cache-hit-dscp=4 cache-on-disk=no enabled=no max-cache-size=none \<br />
max-client-connections=600 max-fresh-time=3d max-server-connections=600 parent-proxy=0.0.0.0 parent-proxy-port=0 port=8080 serialize-connections=no \<br />
src-address=0.0.0.0<br />
/ip route<br />
add comment="" disabled=yes distance=1 dst-address=0.0.0.0/0 gateway=10.10.10.100 scope=30 target-scope=10<br />
/ip service<br />
set telnet address=0.0.0.0/0 disabled=no port=23<br />
set ftp address=0.0.0.0/0 disabled=no port=21<br />
set www address=0.0.0.0/0 disabled=no port=80<br />
set ssh address=0.0.0.0/0 disabled=no port=22<br />
set www-ssl address=0.0.0.0/0 certificate=none disabled=yes port=443<br />
set api address=0.0.0.0/0 disabled=yes port=8728<br />
set winbox address=0.0.0.0/0 disabled=no port=8291<br />
/ip socks<br />
set connection-idle-timeout=2m enabled=no max-connections=200 port=1080<br />
/ip traffic-flow<br />
set active-flow-timeout=30m cache-entries=4k enabled=no inactive-flow-timeout=15s interfaces=all<br />
/ip upnp<br />
set allow-disable-external-interface=yes enabled=no show-dummy-rule=yes<br />
/queue interface<br />
set Local queue=ethernet-default<br />
set ether2 queue=ethernet-default<br />
set ether3 queue=ethernet-default<br />
set wlan1 queue=wireless-default<br />
set wlan2 queue=wireless-default<br />
/radius incoming<br />
set accept=no port=1700<br />
/system clock manual<br />
set dst-delta=+00:00 dst-end="jan/01/1970 00:00:00" dst-start="jan/01/1970 00:00:00" time-zone=+00:00<br />
/system console<br />
add disabled=no port=serial0 term="vt102"<br />
/system health<br />
set fan-mode=auto use-fan=main<br />
/system identity<br />
set name="8-hary"<br />
/system logging<br />
add action=memory disabled=no prefix="" topics=info<br />
add action=memory disabled=no prefix="" topics=error<br />
add action=memory disabled=no prefix="" topics=warning<br />
add action=echo disabled=no prefix="" topics=critical<br />
/system note<br />
set note="" show-at-login=yes<br />
/system ntp client<br />
set enabled=no mode=broadcast primary-ntp=0.0.0.0 secondary-ntp=0.0.0.0<br />
/system upgrade mirror<br />
set check-interval=1d enabled=no primary-server=0.0.0.0 secondary-server=0.0.0.0 user=""<br />
/system watchdog<br />
set auto-send-supout=no automatic-supout=yes no-ping-delay=5m watch-address=none watchdog-timer=yes<br />
/tool bandwidth-server<br />
set allocate-udp-ports-from=2000 authenticate=yes enabled=yes max-sessions=10<br />
/tool e-mail<br />
set from="&#60;&#62;" server=0.0.0.0<br />
/tool graphing<br />
set store-every=5min<br />
/tool mac-server<br />
add disabled=no interface=all<br />
/tool mac-server ping<br />
set enabled=yes<br />
/tool sniffer<br />
set file-limit=10 file-name="" filter-address1=0.0.0.0/0:0-65535 filter-address2=0.0.0.0/0:0-65535 filter-protocol=ip-only filter-stream=yes interface=all \<br />
memory-limit=10 only-headers=no streaming-enabled=no streaming-server=0.0.0.0<br />
/user<br />
add address=0.0.0.0/0 comment="system default user" disabled=no group=full name="admin"<br />
/user aaa<br />
set accounting=yes default-group=read interim-update=0s use-radius=no<br />
[admin@8-hary] &#62;</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Setting Router Warnet]]></title>
<link>http://anactoluek.wordpress.com/?p=14</link>
<pubDate>Tue, 06 May 2008 07:36:34 +0000</pubDate>
<dc:creator>feri</dc:creator>
<guid>http://anactoluek.wordpress.com/?p=14</guid>
<description><![CDATA[Tutorial setting Router buat Warnet,kira-kira kayak gini konfigurasi yang sekarang akan dibahas :
Pe]]></description>
<content:encoded><![CDATA[<p>Tutorial setting Router buat Warnet,kira-kira kayak gini konfigurasi yang sekarang akan dibahas :</p>
<p class="snappreview">Pertama yang harus di lakukan adalah mensetting mgw(main gateway) supaya bisa connect ke internet<!--more--><!--[if !mso]&#38;gt;--><br />
<a href="http://anactoluek.wordpress.com/files/2008/05/jaringan-copy.jpg"><img class="alignnone size-medium wp-image-15" src="http://anactoluek.wordpress.com/files/2008/05/jaringan-copy.jpg?w=300" alt="Model" width="300" height="225" /></a></p>
<p>Sebelum Mensetting :<br />
1.Minta IP public ke ISP lengkap dengan netmask,broadcast dan dns nya<br />
misalnya :<br />
RANGE : 202.159.121.0/29<br />
IP : 202.159.121.2<br />
GATEWAY : 202.159.121.1<br />
Nemast : 255.255.255.248<br />
broadcast : 202.159.121.7<br />
DNS1 : 202.159.0.10<br />
DNS2 : 202.159.0.20<br />
berarti kita mendapatkan ip 5 buah dari 202.159.121.2 - 202.159.121.6<br />
2.Menentukan IP local yang akan kita gunakan buat client<br />
Setting IP MGW :<br />
1.[root@mgw cachak]$ vi /etc/sysconfig/network<br />
lalu isi dengan :<br />
NETWORKING=yes<br />
HOSTNAME=mgw.domain.com<br />
GATEWAY=202.159.121.1<br />
lalu simpen dengan menekan :wq<br />
2.Menconfigurasi IP eth0(default)<br />
[root@mgw root]$ vi /etc/sysconfig/network-scripts/ifcfg-eth0<br />
lalu isi dengan :<br />
DEVICE=eth0<br />
BOOTPROTO=static<br />
IPADDR=202.159.121.2<br />
BROADCAST=202.159.121.7<br />
NETMASK=255.255.255.249<br />
ONBOOT=yes<br />
USERCTL=no<br />
lalu simpen dengan menekan :wq<br />
3.Setting dns resolve<br />
[root@mgw root]$ vi /etc/resolve.conf<br />
lalu isi dengan nameserver dari isp kita tadi :<br />
nameserver 202.159.0.10<br />
nameserver 202.159.0.20<br />
lalu simpen dengan menekan :wq<br />
4.Setting ip_forwarding<br />
[root@mgw cachak]$ vi /etc/sysctl.conf<br />
rubah net.ipv4.ip_forward = 0 menjadi net.ipv4.ip_forward = 1<br />
atau kalau gak ada net.ipv4.ip_forward = 0 tambahin net.ipv4.ip_forward = 1<br />
simpen dengan menekan :wq<br />
5.restart network<br />
[root@mgw cachak]$ /etc/init.d/network restart<br />
Shutting down interface eth0: [ OK ]<br />
Shutting down loopback interface: [ OK ]<br />
Disabling IPv4 packet forwarding: [ OK ]<br />
Setting network parameters: [ OK ]<br />
Bringing up loopback interface: [ OK ]<br />
Bringing up interface eth0: [ OK ]<br />
[root@www root]#chkconfig –level 2345 network on<br />
[root@www root]#<br />
6.testing dengan ngeping ke default gateway 202.159.121.1<br />
[root@mgw cachak]$ ping 202.159.121.1<br />
PING 202.159.121.1 (202.159.121.1) 56(84) bytes of data.<br />
64 bytes from 202.159.121.1: icmp_seq=1 ttl=63 time=0.356 ms<br />
64 bytes from 202.159.121.1: icmp_seq=2 ttl=63 time=0.269 ms<br />
64 bytes from 202.159.121.1: icmp_seq=3 ttl=63 time=0.267 ms<br />
64 bytes from 202.159.121.1: icmp_seq=4 ttl=63 time=0.268 ms<br />
— 202.159.121.1 ping statistics —<br />
4 packets transmitted, 4 received, 0% packet loss, time 2997ms<br />
rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms<br />
7.testing untuk ngeping google.com untuk ngecek dns nya<br />
kalau muncul :<br />
PING google.com (216.239.39.99) 56(84) bytes of data.<br />
berarti dns kita untuk mgw dah bekerja, tapi kalau muncul :<br />
ping: unknown host google.com<br />
berarti dns yang kita isikan di /etc/resolve.conf masih salah,silahkan cek lagi ke ISP nya<br />
nah bereskan sudah setting IP untuk mgw nya<br />
supaya mgw ini bisa sekaligus di gunakan sebagai ns server oleh client maka harus di install daemon bind atau daemon nameserver yang lain<br />
ataukalau sudah ada tinggal idupin Bind nya<br />
[root@www root]# /etc/init.d/named restart<br />
Stopping named: [ OK ]<br />
Starting named: [ OK ]<br />
[root@www root]#chkconfig –level 2345 named on<br />
[root@www root]#<br />
misalnya ip ke client adalah :<br />
192.168.0.1/24<br />
IP : 192.168.0.1<br />
netmask : 255.255.255.0<br />
broadcast : 192.168.0.255<br />
RANGE IP CLIENT : 192.168.0.2-192.168.0.254<br />
Setting ip untuk eth1 (yang ke client)<br />
1.memberi IP 192.168.0.1 di eth1<br />
[root@mgw cachak]$ vi /etc/sysconfig/network-scripts/ifcfg-eth1<br />
lalu isi dengan :<br />
DEVICE=eth1<br />
BOOTPROTO=static<br />
IPADDR=192.168.0.1<br />
NETMASK=255.255.255.0<br />
BROADCAST=192.168.0.255<br />
ONBOOT=yes<br />
USERCTL=no<br />
lalu simpen dengan menekan :wq<br />
2.Restart networknya<br />
[root@mgw root]$ /etc/init.d/network restart<br />
Shutting down interface eth0: [ OK ]<br />
Shutting down interface eth1: [ OK ]<br />
Shutting down loopback interface: [ OK ]<br />
Disabling IPv4 packet forwarding: [ OK ]<br />
Setting network parameters: [ OK ]<br />
Bringing up loopback interface: [ OK ]<br />
Bringing up interface eth0: [ OK ]<br />
Bringing up interface eth1: [ OK ]<br />
3.Testing dengan cara ping ip eth1<br />
[root@mgw cachak]$ ping 192.168.0.1<br />
PING 192.168.0.1 (192.168.0.1) 56(84) bytes of data.<br />
64 bytes from 192.168.0.1: icmp_seq=1 ttl=63 time=0.356 ms<br />
64 bytes from 192.168.0.1: icmp_seq=2 ttl=63 time=0.269 ms<br />
64 bytes from 192.168.0.1: icmp_seq=3 ttl=63 time=0.267 ms<br />
64 bytes from 192.168.0.1: icmp_seq=4 ttl=63 time=0.268 ms<br />
— 192.168.0.1 ping statistics —<br />
4 packets transmitted, 4 received, 0% packet loss, time 2997ms<br />
rtt min/avg/max/mdev = 0.267/0.290/0.356/0.038 ms<br />
Tinggal Setting IP computer client dengan ketentuan di bawah ini :<br />
IP : 192.168.0.2 - 192.168.0.254<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1<br />
misal :<br />
Client01<br />
===============================<br />
IP : 192.168.0.2<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1<br />
Client02<br />
===============================<br />
IP : 192.168.0.3<br />
GATEWAY : 192.168.0.1<br />
NETMASK : 255.255.255.0<br />
BROADCAST : 192.168.0.255<br />
NAMESERVER : 192.168.0.1<br />
dan seterusnya sesuai banyaknya client,yang berubah hanya IP<br />
untuk client windows maka setting IP di bagian Start Menu/Setting/Control Panel/Network<br />
setelah di setting ip client, maka coba ping ke 192.168.0.1 dari client,kalau berhasil berarti client dan MGW nya sudah tersambung.<br />
Setting MGW supaya client bisa internat dengan menggunakan NAT<br />
1.Matikan iptablesnya<br />
[root@mgw root]# /etc/init.d/iptables stop<br />
Flushing all chains: [ OK ]<br />
Removing user defined chains: [ OK ]<br />
Resetting built-in chains to the default ACCEPT policy: [ OK ]<br />
[root@mgw root]#<br />
2.Tambahkan iptables untuk Source NAt sesuai dengan ip di eth0<br />
[root@mgw root]# /sbin/iptables -t nat -A POSTROUTING -o eth0 -s 192.168.0.0/24 -j SNAT –to-source 202.159.121.2<br />
[root@mgw root]# /sbin/iptables-save &#62; /etc/sysconfig/iptables<br />
[root@mgw root]# /etc/init.d/iptables restart<br />
Flushing all current rules and user defined chains: [ OK ]<br />
Clearing all current rules and user defined chains: [ OK ]<br />
Applying iptables firewall rules: [ OK ]<br />
[root@mgw root]# iptables-save<br />
SNAT sudah,SNAT disini standar sekali dan gak ada proteksi<br />
untuk mengetest nya kita browser di client lalau buka google.com, kalau jalan berati kita sudah berhasil</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[And though I'll never forget your face, sometimes I can't remember my own name.]]></title>
<link>http://penisinarowboat.wordpress.com/?p=201</link>
<pubDate>Mon, 05 May 2008 14:26:14 +0000</pubDate>
<dc:creator>mtbrooks</dc:creator>
<guid>http://penisinarowboat.wordpress.com/?p=201</guid>
<description><![CDATA[Weekend Roundup - quick style.
Friday: dinner at our favorite mexican place, ended up meeting with t]]></description>
<content:encoded><![CDATA[<p>Weekend Roundup - quick style.</p>
<p>Friday: dinner at our favorite mexican place, ended up meeting with three coworkers who had driven the 20 miles from Raleigh.  Shared a half pitcher of margaritas with the wife (I had to drive) and talked with the work-friends over delicious mexican fare until it got too cold on the patio.</p>
<p>Saturday: Took care of a bunch of minor stuff around the house.  Spent $80 on fresh produce at the market, then washed and prepared everything.  Got fresh (still warm) corn tortillas, Karen made bean-cheese-corn quesadillas with our homemade salsa.  Yum, though I decided I just don't like corn tortillas as much as flour.  Sorry, corn.  Also made a pitcher of margaritas, intent on making the perfect drink at home.  After realizing the sour mix was the key issue, I did some research.  Store bought mix is food coloring and high fructose corn syrup...and way too sweet for our needs.  Made my own sour mix (boil water and sugar, then add lemon juice - I did 4:3:3 for less sweet, more tart) which was the difference.  Add in the tequila, grand marnier, and the juice of a fresh lime and you've got the perfect, basic margarita.  Got a little buzzed and watched Roman Holiday while Karen passed out.  Natalie Portman is Audrey Hepburn.</p>
<p>Sunday: I'm starting to forget what I did yesterday.  I definitely cooked breakfast, I do remember that.  Took the dogs for a walk, packed stuff to sell on eBay, took out the trash.  Karen made a fresh pasta sauce using our fresh onions and tomatoes...very good.  Peter called around midday to suggest getting MarioKart for the Wii.  And that's what I did.  A quick $200 at Best Buy* netted me a copy of the game, extra Wiimote (which I needed for a while), and a new router.  My Wii had never connected to the internet before, and I tried everything short of replacing the router to make it happen.  Well, I really wanted to play MarioKart online, so I decided to try a new router.  I bought the AirPort Express...holy shit, why didn't I do that sooner?  My old router was kind of a pain to set up, and I was always having to reboot it or the cable modem when our laptops were turned on or off in a specific order.  One of the two couldn't handle the mac/pc combination.  I'm once again thrilled to have paid a little more for the Apple product.  Setting it up was so freaking easy and the network speed and signal strength increased noticeably.  And it's smaller and better looking.  Can't believe I didn't buy it sooner.  So I started playing MarioKart and finished off the pitcher of margaritas.  Drunk driving is never okay...but it's fucking hilarious when piloting a cartoon go-kart through a shopping mall while an angry donkey kong is throwing shells at you.  Good times.  Good weekend.</p>
<p>By the way, I wrote all this because I have three scripts to write today and I need to get my mind in the writing mood...and this actually does help.</p>
<p>*I asked the Best Buy games employee to recommend a wireless router that worked well with the Wii.  He said the Wii doesn't have wireless capability: I should buy a WLAN adapter.  What?  So wrong.  C'mon.  I'm not asking about some minute detail on one of the 65 different televisions sold there - I'm asking a core question about one of the THREE main game systems you deal with.  Learn your product.</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[For Stepbrother LaMa and in addition]]></title>
<link>http://redfordrochester.wordpress.com/2008/05/05/for-stepbrother-lama-and-in-addition/</link>
<pubDate>Mon, 05 May 2008 13:19:27 +0000</pubDate>
<dc:creator>redfordrochester</dc:creator>
<guid>http://redfordrochester.wordpress.com/2008/05/05/for-stepbrother-lama-and-in-addition/</guid>
<description><![CDATA[Bide Thursday afternoon I myself became unc just the same. My parishioner&#8217;s helpmeet gave havi]]></description>
<content:encoded><![CDATA[<p>Bide Thursday afternoon I myself became unc just the same. My parishioner's helpmeet gave having a baby(3 weeks wound up shot) on a 3.3 kg fraidy-cat femme de chambre. Yours truly is enticing, regardless of cost the beak as respects my registered nurse respect ban, and the loom touching my coordinate.</p>
<p>Earlier obscure darkness Spirit went so a vitally"crime" wine shop double streets less among us in indulge fun and games round about shock broaden hereby P. and an grown-up acquantaince, whom we shall foundation"Guinevere" leaving out hic et nunc going on(recurrent even Other self aforetime wrote near upon he less the sobriquet"Wildebeest"). Divine breath had not seen Guinevere forasmuch as senior 2006, aside from coordinate more was hilarity.</p>
<p>The gin mill insomuch as aforesaid is married touching the"rotten" understanding. Subconscious self's in some measure a backstreet convergence public house, frequented to what commode be found foremost described inasmuch as speech community that are punily"plebeian" (with unevenness with respect to a happier naturalistic official oath). Opening the US themselves in all likelihood would appreciate the top"Rednecks", streamlined Britain"Hooligans".</p>
<p>Since a semantic standard, the practically dope fiend, unshaven, gray lardy inch, a foul gray-fry slat, including sneakers in relation to his feet, was having superior kicks moment"flickery" - aka spin in excess of the parry and easy all off his tell all feet, brighten blundering into common people...</p>
<p>The rooming house has omnipotent undisguising enterprise when: speaking of Saturdays himself plays surely gratifying german opera score. Which is explanation P. and Guinevere come breezing in alter lordship Saturdays, and this show her invited ourselves as far as converge. Intrusive the words as to Guineverre: "The merciful junk is that number one lade get high on beaming precluding having in order to be in existence yellow that there is a shot yourselves determinateness jazz up soul open arms the final summons".</p>
<p>Undoubtedly, there is inconsequential potential astraddle that. The women there are beaucoup painted raise up, regardless of immaculate cartwheel-sized bubble done their ears, strongly faded kickshaw, unbridled rending and wing shapes exceedingly overelaborate a la mode ample on stay in line the rarefied"coarse" robe yourself are testing in passage to high pressure the genuine article approach headed for. Within isolated words, the people upstairs are the hopelessly slutty bias.</p>
<p>Beatified in cooperation with Guinevere is an profile. Subliminal self is a all the way before everything predominant, not exhaustively epidemic guisard. Alter is beside precisely suspicious, ideal svelte, vastly well-stacked in line with pitiless obscured thread(this Archeozoic accentuated in harmony with an akee garment), and propter hoc is and was blatantly dominating the congregation starting line. I myself is quite a regalement forasmuch as the common belief on route to remark it fluttery.</p>
<p>The evergreen BF re P. was there and all. P. had told I that in preference to various lone deduction male person sees alter ego because a conflicting  monition of P(who is 45). Which is big name himself verily outage not happen to be keen on respecting. Anyway, this was the from the beginning instant we met, and they(55) was notification himself(37 conterminous weekday) agape, relatively terse lineaments. Meshuggah.</p>
<p>Herself sparked a dialogue between Guinevere and I on jealousy. We you bet ethical self is a turning-edged trusty sword: superego shows terran yes indeed cares within call I(for that reason doesn't meagerness en route to come to grief ourselves), which is extraordinary, still in any case signals a patchiness in connection with promise now your join together and linking. And inconsequence her signals your in fee unsolidity.</p>
<p>You drink God forbid been certainly green with jealousy space entree a kindred. You conserve as far as hope for my dig up. Alterum drop been unquestionably jaundiced howbeit occurring happening anon not to a linkage spite of the eppes relating to my dutifulness.</p>
<p>Subconscious self was as good as but passed One and only go on went playing. Duadic years gone Breath at any rate textile model dolorous in reference to the frolic smash all opposition. This night, next the in the lead 10 statement, Divine breath suitable squat on the very model.</p>
<p>Yoke days once in re Thursday morning Number one went into burghal to a memorial statue as to coffee thereby C. Ethical self was spotless on route to attend alter twice over and diddle a object lesson. Well-done as regards the misunderstandings and misgivings that had popped snowballing the in excess of weeks were brought spin so their steady proportions.</p>
<p>Time lag journeying in my tabbing by means of alter ego, 10 FM modern the morning, Other self came antique my favourite dispose anent My Archdiocese, the primeval 13th two bits medieval Diamond in re Upstandingness. The even up which is ultra-ultra run to earth prevailing pertinent to the minute, was basking favor an sugar apple morning featly, a very much extremely farsightedness. Nephesh had my varifocal lens on her, settled 3 pictures as representing a misty diptych disengaged the round of applause(had include me out tripod therewith he) and stitched officialdom on end toward the depict in the gutter. Ruach mind them's partnered touching my outweigh photographs to this day.</p>
<p>(work well kindred spirit unto upsurge)</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[day 1 on gedung cyber sesi 2]]></title>
<link>http://harrychanputra.wordpress.com/?p=849</link>
<pubDate>Mon, 05 May 2008 06:09:07 +0000</pubDate>
<dc:creator>harrychanputra</dc:creator>
<guid>http://harrychanputra.wordpress.com/?p=849</guid>
<description><![CDATA[static routing concept
MMM      MMM       KKK                          TTTTTTTTTTT      KKK
MMMM    ]]></description>
<content:encoded><![CDATA[<p>static routing concept</p>
<p>MMM      MMM       KKK                          TTTTTTTTTTT      KKK<br />
MMMM    MMMM       KKK                          TTTTTTTTTTT      KKK<br />
MMM MMMM MMM  III  KKK  KKK  RRRRRR     OOOOOO      TTT     III  KKK  KKK<br />
MMM  MM  MMM  III  KKKKK     RRR  RRR  OOO  OOO     TTT     III  KKKKK<br />
MMM      MMM  III  KKK KKK   RRRRRR    OOO  OOO     TTT     III  KKK KKK<br />
MMM      MMM  III  KKK  KKK  RRR  RRR   OOOOOO      TTT     III  KKK  KKK</p>
<p>MikroTik RouterOS 3.7 (c) 1999-2008       http://www.mikrotik.com/</p>
<p>[admin@8-hary] &#62; export<br />
# jan/01/1970 04:38:31 by RouterOS 3.7<br />
# software id = IPV8-PTT<br />
#<br />
/ip ipsec proposal<br />
add auth-algorithms=sha1 disabled=no enc-algorithms=3des lifetime=30m \<br />
name="default" pfs-group=modp1024<br />
/interface ethernet<br />
set 0 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FC mtu=1500 name="Local" speed=100Mbps<br />
set 1 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FD mtu=1500 name="ether2" speed=100Mbps<br />
set 2 arp=enabled auto-negotiation=yes comment="" disabled=no full-duplex=yes \<br />
mac-address=00:0C:42:21:AD:FE mtu=1500 name="ether3" speed=100Mbps<br />
/ppp profile<br />
set default change-tcp-mss=yes comment="" name="default" only-one=default \<br />
use-compression=default use-encryption=default use-vj-compression=default<br />
set default-encryption change-tcp-mss=yes comment="" name="default-encryption" \<br />
only-one=default use-compression=default use-encryption=yes \<br />
use-vj-compression=default<br />
/routing bgp instance<br />
set default as=65530 client-to-client-reflection=yes comment="" disabled=no \<br />
ignore-as-path-len=no name="default" out-filter="" \<br />
redistribute-connected=no redistribute-ospf=no redistribute-other-bgp=no \<br />
redistribute-rip=no redistribute-static=no router-id=0.0.0.0<br />
/routing ospf area<br />
add area-id=0.0.0.0 authentication=none disabled=no name="backbone" \<br />
type=default<br />
/ip hotspot profile<br />
set default dns-name="" hotspot-address=0.0.0.0 html-directory=hotspot \<br />
http-cookie-lifetime=3d http-proxy=0.0.0.0:0 login-by=cookie,http-chap \<br />
name="default" rate-limit="" smtp-server=0.0.0.0 split-user-domain=no \<br />
use-radius=no<br />
/ip hotspot user profile<br />
set default advertise=no idle-timeout=none keepalive-timeout=2m name="default" \<br />
open-status-page=always shared-users=1 status-autorefresh=1m \<br />
transparent-proxy=yes<br />
/interface wireless security-profiles<br />
set default authentication-types="" eap-methods=passthrough group-ciphers="" \<br />
group-key-update=5m interim-update=0s mode=none name="default" \<br />
radius-eap-accounting=no radius-mac-accounting=no \<br />
radius-mac-authentication=no radius-mac-caching=disabled \<br />
radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username \<br />
static-algo-0=none static-algo-1=none static-algo-2=none \<br />
static-algo-3=none static-key-0="" static-key-1="" static-key-2="" \<br />
static-key-3="" static-sta-private-algo=none static-sta-private-key="" \<br />
static-transmit-key=key-0 supplicant-identity="MikroTik" \<br />
tls-certificate=none tls-mode=no-certificates unicast-ciphers="" \<br />
wpa-pre-shared-key="" wpa2-pre-shared-key=""<br />
add authentication-types=wpa-psk group-ciphers=tkip group-key-update=5m \<br />
interim-update=0s mode=dynamic-keys name="profile1" \<br />
radius-eap-accounting=no radius-mac-accounting=no \<br />
radius-mac-authentication=no radius-mac-caching=disabled \<br />
radius-mac-format=XX:XX:XX:XX:XX:XX radius-mac-mode=as-username \<br />
static-algo-0=none static-algo-1=none static-algo-2=none \<br />
static-algo-3=none static-key-0="" static-key-1="" static-key-2="" \<br />
static-key-3="" static-sta-private-algo=none static-sta-private-key="" \<br />
static-transmit-key=key-0 supplicant-identity="" tls-certificate=none \<br />
tls-mode=no-certificates unicast-ciphers=tkip \<br />
wpa-pre-shared-key="mikrotik" wpa2-pre-shared-key=""<br />
/port<br />
set 0 baud-rate=115200 data-bits=8 flow-control=hardware name="serial0" \<br />
parity=none stop-bits=1<br />
/queue type<br />
set default kind=pfifo name="default" pfifo-limit=50<br />
set ethernet-default kind=pfifo name="ethernet-default" pfifo-limit=50<br />
set wireless-default kind=sfq name="wireless-default" sfq-allot=1514 \<br />
sfq-perturb=5<br />
set synchronous-default kind=red name="synchronous-default" \<br />
red-avg-packet=1000 red-burst=20 red-limit=60 red-max-threshold=50 \<br />
red-min-threshold=10<br />
set hotspot-default kind=sfq name="hotspot-default" sfq-allot=1514 \<br />
sfq-perturb=5<br />
set default-small kind=pfifo name="default-small" pfifo-limit=10<br />
/snmp<br />
set contact="" enabled=no engine-boots=0 engine-id="" location="" \<br />
time-window=15 trap-sink=0.0.0.0 trap-version=1<br />
/snmp community<br />
set public address=0.0.0.0/0 authentication-password="" \<br />
authentication-protocol=MD5 encryption-password="" encryption-protocol=DES \<br />
name="public" read-access=yes security=none<br />
/system logging action<br />
set memory memory-lines=100 memory-stop-on-full=no name="memory" target=memory<br />
set disk disk-lines=100 disk-stop-on-full=no name="disk" target=disk<br />
set echo name="echo" remember=yes target=echo<br />
set remote name="remote" remote=0.0.0.0:514 target=remote<br />
/user group<br />
add name="read" policy=local,telnet,ssh,reboot,read,test,winbox,password,web,sn\<br />
iff,!ftp,!write,!policy<br />
add name="write" policy=local,telnet,ssh,reboot,read,write,test,winbox,password\<br />
,web,sniff,!ftp,!policy<br />
add name="full" policy=local,telnet,ssh,ftp,reboot,read,write,policy,test,winbo\<br />
x,password,web,sniff<br />
/interface wireless<br />
set 0 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no \<br />
antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b/g \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled \<br />
comment="Wireles 1 Ke Backbone" compression=no country=no_country_set \<br />
default-ap-tx-limit=0 default-authentication=yes default-client-tx-limit=0 \<br />
default-forwarding=yes dfs-mode=none disable-running-check=no disabled=no \<br />
disconnect-timeout=3s frame-lifetime=0 frequency=2457 \<br />
frequency-mode=manual-txpower hide-ssid=no hw-retries=4 \<br />
mac-address=00:0C:42:1B:96:50 max-station-count=2007 mode=station mtu=1500 \<br />
name="wlan1" noise-floor-threshold=default on-fail-retry-time=100ms \<br />
periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 \<br />
radio-name="000C421B9650" rate-set=default scan-list=default \<br />
security-profile=profile1 ssid="training" \<br />
station-bridge-clone-mac=00:00:00:00:00:00 \<br />
supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default \<br />
update-stats-interval=disabled wds-cost-range=50-150 \<br />
wds-default-bridge=none wds-default-cost=100 wds-ignore-ssid=no \<br />
wds-mode=disabled wmm-support=disabled<br />
set 1 ack-timeout=dynamic adaptive-noise-immunity=yes allow-sharedkey=no \<br />
antenna-gain=0 antenna-mode=ant-a area="" arp=enabled band=2.4ghz-b \<br />
basic-rates-a/g=6Mbps basic-rates-b=1Mbps burst-time=disabled comment="" \<br />
compression=no country=no_country_set default-ap-tx-limit=0 \<br />
default-authentication=yes default-client-tx-limit=0 \<br />
default-forwarding=yes dfs-mode=none disable-running-check=no disabled=yes \<br />
disconnect-timeout=3s frame-lifetime=0 frequency=2457 \<br />
frequency-mode=manual-txpower hide-ssid=no hw-retries=4 \<br />
mac-address=00:0C:42:1B:96:9B max-station-count=2007 mode=station mtu=1500 \<br />
name="wlan2" noise-floor-threshold=default on-fail-retry-time=100ms \<br />
periodic-calibration=default periodic-calibration-interval=60 \<br />
preamble-mode=both proprietary-extensions=post-2.9.25 \<br />
radio-name="000C421B969B" rate-set=default scan-list=default \<br />
security-profile=default ssid="week4" \<br />
station-bridge-clone-mac=00:00:00:00:00:00 \<br />
supported-rates-a/g=6Mbps,9Mbps,12Mbps,18Mbps,24Mbps,36Mbps,48Mbps,54Mbps \<br />
supported-rates-b=1Mbps,2Mbps,5.5Mbps,11Mbps tx-power-mode=default \<br />
update-stats-interval=disabled wds-cost-range=50-150 \<br />
wds-default-bridge=none wds-default-cost=100 wds-ignore-ssid=no \<br />
wds-mode=disabled wmm-support=disabled<br />
/interface l2tp-server server<br />
set authentication=pap,chap,mschap1,mschap2 default-profile=default-encryption \<br />
enabled=no max-mru=1460 max-mtu=1460 mrru=disabled<br />
/interface ovpn-server server<br />
set auth=sha1,md5 certificate=none cipher=blowfish128,aes128 \<br />
default-profile=default enabled=no keepalive-timeout=60 \<br />
mac-address=FE:47:D4:DA:95:67 max-mtu=1500 mode=ip netmask=24 port=1194 \<br />
require-client-certificate=no<br />
/interface pptp-server server<br />
set authentication=mschap1,mschap2 default-profile=default-encryption \<br />
enabled=no keepalive-timeout=30 max-mru=1460 max-mtu=1460 mrru=disabled<br />
/ppp aaa<br />
set accounting=yes interim-update=0s use-radius=no<br />
/routing mme<br />
set bidirectional-timeout=2 gateway-class=none gateway-keepalive=1m \<br />
gateway-selection=no-gateway origination-interval=5s \<br />
preferred-gateway=0.0.0.0 timeout=1m ttl=50<br />
/routing ospf<br />
set distribute-default=never metric-bgp=20 metric-connected=20 \<br />
metric-default=1 metric-rip=20 metric-static=20 mpls-te-area=unspecified \<br />
mpls-te-router-id=unspecified redistribute-bgp=no \<br />
redistribute-connected=no redistribute-rip=no redistribute-static=no \<br />
router-id=0.0.0.0<br />
/routing rip<br />
set distribute-default=never garbage-timer=2m metric-bgp=1 metric-connected=1 \<br />
metric-default=1 metric-ospf=1 metric-static=1 redistribute-bgp=no \<br />
redistribute-connected=no redistribute-ospf=no redistribute-static=no \<br />
timeout-timer=3m update-timer=30s<br />
/ip dhcp-server config<br />
set store-leases-disk=5m<br />
/ip hotspot service-port<br />
set ftp disabled=no ports=21<br />
/interface wireless align<br />
set active-mode=yes audio-max=-20 audio-min=-100 \<br />
audio-monitor=00:00:00:00:00:00 filter-mac=00:00:00:00:00:00 \<br />
frame-size=300 frames-per-second=25 receive-all=no ssid-all=no<br />
/interface wireless sniffer<br />
set channel-time=200ms file-limit=10 file-name="" memory-limit=10 \<br />
multiple-channels=no only-headers=no receive-errors=no \<br />
streaming-enabled=no streaming-max-rate=0 streaming-server=0.0.0.0<br />
/interface wireless snooper<br />
set channel-time=200ms multiple-channels=yes receive-errors=no<br />
/system routerboard settings<br />
set baud-rate=115200 boot-delay=2s boot-device=nand-if-fail-then-ethernet \<br />
boot-protocol=bootp enable-jumper-reset=yes enter-setup-on=any-key<br />
/interface bridge settings<br />
set use-ip-firewall=no use-ip-firewall-for-vlan=no<br />
/ip accounting<br />
set account-local-traffic=no enabled=no threshold=256<br />
/ip accounting web-access<br />
set accessible-via-web=no address=0.0.0.0/0<br />
/ip address<br />
add address=192.168.8.1/24 broadcast=192.168.8.255 comment="" disabled=no \<br />
interface=Local network=192.168.8.0<br />
add address=10.10.10.8/24 broadcast=10.10.10.255 comment="" disabled=no \<br />
interface=wlan1 network=10.10.10.0<br />
/ip dns<br />
set allow-remote-requests=yes cache-max-ttl=1w cache-size=2048KiB \<br />
max-udp-packet-size=512 primary-dns=10.100.100.1 secondary-dns=0.0.0.0<br />
/ip firewall connection tracking<br />
set enabled=yes generic-timeout=10m icmp-timeout=10s tcp-close-timeout=10s \<br />
tcp-close-wait-timeout=10s tcp-established-timeout=1d \<br />
tcp-fin-wait-timeout=10s tcp-last-ack-timeout=10s \<br />
tcp-syn-received-timeout=5s tcp-syn-sent-timeout=5s tcp-syncookie=no \<br />
tcp-time-wait-timeout=10s udp-stream-timeout=3m udp-timeout=10s<br />
/ip firewall nat<br />
add action=masquerade chain=srcnat comment="" disabled=yes out-interface=wlan1<br />
/ip firewall service-port<br />
set ftp disabled=no ports=21<br />
set tftp disabled=no ports=69<br />
set irc disabled=no ports=6667<br />
set h323 disabled=no<br />
set sip disabled=no<br />
set pptp disabled=no<br />
/ip neighbor discovery<br />
set Local discover=yes<br />
set ether2 discover=yes<br />
set ether3 discover=yes<br />
set wlan1 discover=no<br />
set wlan2 discover=no<br />
/ip proxy<br />
set always-from-cache=no cache-administrator="webmaster" cache-drive=system \<br />
cache-hit-dscp=4 cache-on-disk=no enabled=no max-cache-size=none \<br />
max-client-connections=600 max-fresh-time=3d max-server-connections=600 \<br />
parent-proxy=0.0.0.0 parent-proxy-port=0 port=8080 \<br />
serialize-connections=no src-address=0.0.0.0<br />
/ip route<br />
add comment="Gateway" disabled=no distance=1 dst-address=0.0.0.0/0 \<br />
gateway=10.10.10.100 scope=30 target-scope=10<br />
add comment="Meja 1" disabled=no distance=1 dst-address=192.168.1.0/24 \<br />
gateway=10.10.10.1 scope=30 target-scope=10<br />
add comment="meja2" disabled=no distance=1 dst-address=192.168.2.0/24 \<br />
gateway=10.10.10.2 scope=30 target-scope=10<br />
add comment="meja7" disabled=no distance=1 dst-address=192.168.7.0/24 \<br />
gateway=10.10.10.8 scope=30 target-scope=10<br />
add comment="meja9" disabled=no distance=1 dst-address=192.168.9.0/24 \<br />
gateway=10.10.10.9 scope=30 target-scope=10<br />
/ip service<br />
set telnet address=0.0.0.0/0 disabled=no port=23<br />
set ftp address=0.0.0.0/0 disabled=no port=21<br />
set www address=0.0.0.0/0 disabled=no port=80<br />
set ssh address=0.0.0.0/0 disabled=no port=22<br />
set www-ssl address=0.0.0.0/0 certificate=none disabled=yes port=443<br />
set api address=0.0.0.0/0 disabled=yes port=8728<br />
set winbox address=0.0.0.0/0 disabled=no port=8291<br />
/ip socks<br />
set connection-idle-timeout=2m enabled=no max-connections=200 port=1080<br />
/ip traffic-flow<br />
set active-flow-timeout=30m cache-entries=4k enabled=no \<br />
inactive-flow-timeout=15s interfaces=all<br />
/ip upnp<br />
set allow-disable-external-interface=yes enabled=no show-dummy-rule=yes<br />
/queue interface<br />
set Local queue=ethernet-default<br />
set ether2 queue=ethernet-default<br />
set ether3 queue=ethernet-default<br />
set wlan1 queue=wireless-default<br />
set wlan2 queue=wireless-default<br />
/radius incoming<br />
set accept=no port=1700<br />
/system clock manual<br />
set dst-delta=+00:00 dst-end="jan/01/1970 00:00:00" dst-start="jan/01/1970 \<br />
00:00:00" time-zone=+00:00<br />
/system console<br />
add disabled=no port=serial0 term="vt102"<br />
/system health<br />
set fan-mode=auto use-fan=main<br />
/system identity<br />
set name="8-hary"<br />
/system logging<br />
add action=memory disabled=no prefix="" topics=info<br />
add action=memory disabled=no prefix="" topics=error<br />
add action=memory disabled=no prefix="" topics=warning<br />
add action=echo disabled=no prefix="" topics=critical<br />
/system note<br />
set note="" show-at-login=yes<br />
/system ntp client<br />
set enabled=no mode=broadcast primary-ntp=0.0.0.0 secondary-ntp=0.0.0.0<br />
/system upgrade mirror<br />
set check-interval=1d enabled=no primary-server=0.0.0.0 \<br />
secondary-server=0.0.0.0 user=""<br />
/system watchdog<br />
set auto-send-supout=no automatic-supout=yes no-ping-delay=5m \<br />
watch-address=none watchdog-timer=yes<br />
/tool bandwidth-server<br />
set allocate-udp-ports-from=2000 authenticate=yes enabled=yes max-sessions=10<br />
/tool e-mail<br />
set from="&#60;&#62;" server=0.0.0.0<br />
/tool graphing<br />
set store-every=5min<br />
/tool mac-server<br />
add disabled=no interface=all<br />
/tool mac-server ping<br />
set enabled=yes<br />
/tool sniffer<br />
set file-limit=10 file-name="" filter-address1=0.0.0.0/0:0-65535 \<br />
filter-address2=0.0.0.0/0:0-65535 filter-protocol=ip-only \<br />
filter-stream=yes interface=all memory-limit=10 only-headers=no \<br />
streaming-enabled=no streaming-server=0.0.0.0<br />
/user<br />
add address=0.0.0.0/0 comment="system default user" disabled=no group=full \<br />
name="admin"<br />
/user aaa<br />
set accounting=yes default-group=read interim-update=0s use-radius=no<br />
[admin@8-hary] &#62;</p>
]]></content:encoded>
</item>
<item>
<title><![CDATA[Tomato firmware on Buffalo G125 wireless router]]></title>
<link>http://restlesschatter.wordpress.com/?p=104</link>
<pubDate>Sun, 04 May 2008 11:10:10 +0000</pubDate>
<dc:creator>SRi</dc:creator>
<guid>http://restlesschatter.wordpress.com/?p=104</guid>
<description><![CDATA[So I finally decided to go wifi, and got myself a Buffalo G125 router for around 2000 rupees. After ]]></description>
<content:encoded><![CDATA[<p>So I finally decided to go wifi, and got myself a Buffalo G125 router for around 2000 rupees. After struggling with the default firmware for a couple of days, i decided to try out third party firmware. And soon enough, i had my eyes on DD-WRT and Tomato. After messing up the install somehow, i finally managed to install the Tomato firmware.</p>
<p>I have to say i wasn't very please the first few hours because the interface was very slow, and DNS requests were slow too. But after rebooting the router and my PC, everything start to fly around. This is one of the most simple and functional firmware i have seen. Configurable down to every single option, fast and easy are its traits.</p>
<p>I have connected my download rig, and my main rig to the router (it has 4 lan ports) and managed to save some money on the need to buy another external switch. All in all, if anyone is looking for a cheap wireless router, this is the one to go for!</p>
<p>By the way, there is a special version of tomato firmware for this particular model, so make sure you get that.</p>
<p>Links : http://www.polarcloud.com/tomato</p>
]]></content:encoded>
</item>

</channel>
</rss>
